Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
BID:59364
Info
Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
| Bugtraq ID: | 59364 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2013-1788 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 27 2013 12:00AM |
| Updated: | Apr 13 2015 10:14PM |
| Credit: | Marcus Meissner |
| Vulnerable: |
Ubuntu Ubuntu Linux 8.04 LTS sparc Ubuntu Ubuntu Linux 8.04 LTS powerpc Ubuntu Ubuntu Linux 8.04 LTS lpia Ubuntu Ubuntu Linux 8.04 LTS i386 Ubuntu Ubuntu Linux 8.04 LTS amd64 Ubuntu Ubuntu Linux 12.10 i386 Ubuntu Ubuntu Linux 12.10 amd64 Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 S.u.S.E. openSUSE 11.4 Oracle Solaris 11.1 Oracle Solaris 10 Mandriva Business Server 1 X86 64 Mandriva Business Server 1 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: |
Poppler poppler 0.22.1 Oracle Solaris 11.1.10.5.0 |
Discussion
Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
Poppler is prone to multiple memory-corruption when handling malformed PDF files.
Successfully exploiting these issues allows remote attackers to execute arbitrary code in the context of the user, which may trigger an 'invalid memory access' error. Failed exploits may result in denial-of-service conditions.
Note: These issues were previously discussed in BID 58198 (Poppler Multiple Denial of Service and Memory Corruption Vulnerabilities), but have been moved to their own record to better document them.
Poppler versions prior to 0.22.1 are vulnerable.
Poppler is prone to multiple memory-corruption when handling malformed PDF files.
Successfully exploiting these issues allows remote attackers to execute arbitrary code in the context of the user, which may trigger an 'invalid memory access' error. Failed exploits may result in denial-of-service conditions.
Note: These issues were previously discussed in BID 58198 (Poppler Multiple Denial of Service and Memory Corruption Vulnerabilities), but have been moved to their own record to better document them.
Poppler versions prior to 0.22.1 are vulnerable.
Exploit / POC
Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
To exploit these issues, an attacker must entice an unsuspecting user to open a malicious PDF file.
The vendor has received an example PDF file from the reporter that demonstrates these issues. This file is not known to be publicly available.
To exploit these issues, an attacker must entice an unsuspecting user to open a malicious PDF file.
The vendor has received an example PDF file from the reporter that demonstrates these issues. This file is not known to be publicly available.
Solution / Fix
Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references or vendor advisory for more information.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva lib64poppler-devel-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-glib-devel-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-glib3-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-qt-devel-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-qt2-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-qt4-3-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-qt4-devel-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler3-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva poppler-0.8.7-2.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5
-
Mandriva libpoppler-devel-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-glib-devel-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-glib3-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-qt-devel-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-qt2-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-qt4-3-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler-qt4-devel-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva libpoppler3-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva poppler-0.8.7-2.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/
Mandriva Business Server 1 X86 64
-
Mandriva lib64poppler-cpp-devel-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-cpp0-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-devel-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-gir0.18-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-glib-devel-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler-glib8-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva lib64poppler19-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva poppler-0.18.4-3.1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
Poppler CVE-2013-1788 Multiple Memory Corruption Vulnerabilities
References:
References:
- CVE Request: poppler 0.22.1 security fixes (Marcus Meissner)
- Bug 917108 CVE-2013-1788 poppler: multiple invalid memory access flaws (Red Hat)
- Poppler Homepage (Poppler)