cbcvebase.
CVE-2005-0064
published 2005-05-02

CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file…

high7.5CVSS 3.1
AVNACLAuNCPIPAP
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
applecups>= 0 < 1.1.22-61.1.22-6
applecups>= 0 < 1.1.22-61.1.22-6
applecups>= 0 < 1.1.22-61.1.22-6
applecups>= 0 < 1.1.22-61.1.22-6
debiancups< cups 1.1.22-6 (bookworm)cups 1.1.22-6 (bookworm)
debianxpdf< cups 1.1.22-6 (bookworm)cups 1.1.22-6 (bookworm)
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf
xpdfxpdf

CVSS provenance

nvd7.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH