Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
BID:30107
Info
Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
| Bugtraq ID: | 30107 |
| Class: | Design Error |
| CVE: |
CVE-2008-2950 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 07 2008 12:00AM |
| Updated: | Apr 13 2015 09:57PM |
| Credit: | Felipe Andres Manzano |
| Vulnerable: |
Ubuntu Ubuntu Linux 8.04 LTS sparc Ubuntu Ubuntu Linux 8.04 LTS powerpc Ubuntu Ubuntu Linux 8.04 LTS lpia Ubuntu Ubuntu Linux 8.04 LTS i386 Ubuntu Ubuntu Linux 8.04 LTS amd64 Ubuntu Ubuntu Linux 7.10 sparc Ubuntu Ubuntu Linux 7.10 powerpc Ubuntu Ubuntu Linux 7.10 lpia Ubuntu Ubuntu Linux 7.10 i386 S.u.S.E. openSUSE 11.0 rPath rPath Linux 2 Poppler poppler 0.8.4 Pardus Linux 2007 0 Pardus Linux 2007.1 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Gentoo Linux Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
The Poppler PDF rendering library is prone to a remote code-execution vulnerability because the software fails to properly initialize a memory pointer.
Successfully exploiting this issue allows attackers to execute arbitrary machine code in the context of applications that use the library. Failed exploit attempts likely result in denial-of-service conditions.
Poppler 0.8.4 is vulnerable to this issue; other versions may also be affected.
The Poppler PDF rendering library is prone to a remote code-execution vulnerability because the software fails to properly initialize a memory pointer.
Successfully exploiting this issue allows attackers to execute arbitrary machine code in the context of applications that use the library. Failed exploit attempts likely result in denial-of-service conditions.
Poppler 0.8.4 is vulnerable to this issue; other versions may also be affected.
Exploit / POC
Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
The following exploit code is available.
Please note that Symantec has not verified this code.
The following exploit code is available.
Please note that Symantec has not verified this code.
Solution / Fix
Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information
Solution:
Updates are available. Please see the references for more information
References
Poppler PDF Rendering Library Page Class Remote Code Execution Vulnerability
References:
References:
- Poppler Homepage (Poppler)
- [oCERT-2008-007] libpoppler uninitialized pointer (Andrea Barisani
)