← Back

CVE-2011-1552

nvd nist
Published: Mar 31, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remote attackers to cause a denial of service (application crash) via a crafted Type 1 font in a PDF document, a different vulnerability than CVE-2011-0764.

Affected (64)

1 product
T1lib
1 product
Xpdf
1 product
Xpdfreader
Configuration A
64 vulnerable
Vulnerable SoftwareAffected Versions
T1lib
Up to 5.1.2
Version 0.1 alpha
Version 0.2 beta
Version 0.3 beta
Version 0.4 beta
Version 0.5 beta
Version 0.6 beta
Version 0.7 beta
Version 0.8 beta
Version 0.9.1
Version 0.9.2
Version 0.9
Version 1.0.1
Version 1.0
Version 1.1.0
Version 1.1.1
Version 1.2
Version 1.3.1
Version 1.3
Version 5.0.0
Version 5.0.1
Version 5.0.2
Version 5.1.0
Version 5.1.1
Foolabs
Version 0.5a
Version 0.7a
Version 0.91a
Version 0.91b
Version 0.91c
Version 0.92a
Version 0.92b
Version 0.92c
Version 0.92d
Version 0.92e
Version 0.93a
Version 0.93b
Version 0.93c
Version 1.00a
Version 3.0.1
Version 3.02pl1
Version 3.02pl2
Version 3.02pl3
Version 3.02pl4
Glyphandcog
Up to 3.02
Version 0.2
Version 0.3
Version 0.4
Version 0.5
Version 0.6
Version 0.7
Version 0.80
Version 0.90
Version 0.91
Version 0.92
Version 0.93
Version 1.00
Version 1.01
Version 2.00
Version 2.01
Version 2.02
Version 2.03
Version 3.00
Version 3.01
Version 3.02

References (26)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.