Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
BID:28830
Info
Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
| Bugtraq ID: | 28830 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-1693 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 17 2008 12:00AM |
| Updated: | Mar 19 2015 08:43AM |
| Credit: | Kees Cook |
| Vulnerable: |
Xpdf Xpdf 3.0 pl3 Xpdf Xpdf 3.0 pl2 Xpdf Xpdf 3.0 1pl1 Xpdf Xpdf 3.0 1 Xpdf Xpdf 3.0 0 Xpdf Xpdf 2.0.3 Xpdf Xpdf 2.0.2 pl1 Xpdf Xpdf 2.0.2 Xpdf Xpdf 2.0.1 Xpdf Xpdf 2.0 3 Xpdf Xpdf 2.0 2 Xpdf Xpdf 2.0 1 Xpdf Xpdf 2.0 Xpdf Xpdf 1.0 1 Xpdf Xpdf 1.0 0a Xpdf Xpdf 1.0 0 Xpdf Xpdf 0.93 Xpdf Xpdf 0.92 Xpdf Xpdf 0.91 Xpdf Xpdf 0.90 Xpdf Xpdf 3.02pl2 Xpdf Xpdf 3.02pl1 Xpdf Xpdf 3.01 Xpdf Xpdf 3.0.1 (Patch 2) Ubuntu Ubuntu Linux 7.10 sparc Ubuntu Ubuntu Linux 7.10 powerpc Ubuntu Ubuntu Linux 7.10 i386 Ubuntu Ubuntu Linux 7.10 amd64 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Ubuntu Ubuntu Linux 6.10 sparc Ubuntu Ubuntu Linux 6.10 powerpc Ubuntu Ubuntu Linux 6.10 i386 Ubuntu Ubuntu Linux 6.10 amd64 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 SuSE SUSE Linux Enterprise Server 9 SP3 SuSE SUSE Linux Enterprise Server 9 SuSE SUSE Linux Enterprise Server 8 SuSE SUSE Linux Enterprise Server 10 SP1 SuSE SUSE Linux Enterprise Server 10 SuSE SUSE Linux Enterprise SDK 10.SP1 SuSE SUSE Linux Enterprise SDK 10 SP1 SuSE SUSE Linux Enterprise SDK 10 SuSE SUSE Linux Enterprise Desktop 10 SP1 SuSE SUSE Linux Enterprise Desktop 10 SuSE openSUSE 10.3 SuSE Linux Professional 10.2 x86_64 SuSE Linux Personal 10.2 x86_64 S.u.S.E. UnitedLinux 1.0 S.u.S.E. SuSE Linux Standard Server 8.0 S.u.S.E. SuSE Linux School Server for i386 S.u.S.E. SUSE LINUX Retail Solution 8.0 S.u.S.E. SuSE Linux Openexchange Server 4.0 S.u.S.E. SuSE Linux Open-Xchange 4.1 S.u.S.E. openSUSE 10.2 S.u.S.E. openSUSE 10.1 S.u.S.E. Open-Enterprise-Server 0 S.u.S.E. Novell Linux POS 9 S.u.S.E. Novell Linux Desktop SDK 9.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Novell Linux Desktop 1.0 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 10.2 S.u.S.E. Linux Professional 10.1 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 10.2 S.u.S.E. Linux Personal 10.1 S.u.S.E. Linux Openexchange Server S.u.S.E. Linux Desktop 10 S.u.S.E. Linux 10.1 x86-64 S.u.S.E. Linux 10.1 x86 S.u.S.E. Linux 10.1 ppc S.u.S.E. Linux 10.0 x86-64 S.u.S.E. Linux 10.0 x86 S.u.S.E. Linux 10.0 ppc RedHat Enterprise Linux WS 4 RedHat Enterprise Linux ES 4 RedHat Enterprise Linux Desktop Workstation 5 client RedHat Desktop 4.0 Red Hat Fedora 7 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux AS 4 Red Hat Enterprise Linux 5 Server Poppler poppler 0.8 Poppler poppler 0.5.4 Poppler poppler 0.5.3 Poppler poppler 0.5.1 Poppler poppler 0.4.5 Poppler poppler 0.4.2 Poppler poppler 0.4.1 Poppler poppler 0.3.2 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0 KDE kword 1.5 KDE kword 1.4.2 KDE kword 1.4.1 KDE KOffice 1.5 KDE KOffice 1.4.2 KDE KOffice 1.4.1 KDE KOffice 1.4 KDE KOffice 1.3.5 KDE KOffice 1.3.4 KDE KOffice 1.3.3 KDE KOffice 1.3.2 KDE KOffice 1.3.1 KDE KOffice 1.3 beta3 KDE KOffice 1.3 beta2 KDE KOffice 1.3 beta1 KDE KOffice 1.3 KDE KOffice 1.2.92 KDE KOffice 1.2.1 KDE KOffice 1.2 KDE kdegraphics 3.3.1 Gentoo Linux Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
The Poppler and Xpdf PDF rendering library is prone to a remote code-execution vulnerability because the software fails to properly validate user-supplied data.
Successfully exploiting this issue allows attackers to execute arbitrary machine code in the context of applications that use the library. Failed exploit attempts likely result in denial-of-service conditions.
The Poppler and Xpdf PDF rendering library is prone to a remote code-execution vulnerability because the software fails to properly validate user-supplied data.
Successfully exploiting this issue allows attackers to execute arbitrary machine code in the context of applications that use the library. Failed exploit attempts likely result in denial-of-service conditions.
Exploit / POC
Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
Solution:
Please see the referenced advisories for details on obtaining and applying the appropriate updates.
Solution:
Please see the referenced advisories for details on obtaining and applying the appropriate updates.
References
Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability
References:
References:
- KDE Homepage (KDE)
- Poppler Homepage (Poppler)
- Xpdf Homepage (Xpdf)
- RHSA-2008:0238-3 kdegraphics security update (Red Hat)
- RHSA-2008:0239-5 poppler security update (Red Hat)
- RHSA-2008:0240-3 xpdf security update (Red Hat)
- RHSA-2008:0262-2 - Important: gpdf security update (Red Hat)