CVE-2005-0064Improper Restriction of Operations within the Bounds of a Memory Buffer in Xpdf

12 documents9 sources
Severity
7.5HIGHNVD
EPSS
8.4%
top 7.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 2
Latest updateMay 3

Description

Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

Debianxpdf/xpdf< 3.00-13+3
NVDxpdf/xpdf32 versions+31
Debianapple/cups< 1.1.22-6+3

Patches

🔴Vulnerability Details

3
GHSA
GHSA-h375-h7pm-622c: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt2022-05-03
OSV
CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt2005-05-02
CVEList
CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt2005-01-19

💥Exploits & PoCs

1
Exploit-DB
CubeCart 3.0.6 - Remote Command Execution2005-12-30

📋Vendor Advisories

3
Ubuntu
xpdf, CUPS vulnerabilities2005-01-19
Red Hat
security flaw2005-01-18
Debian
CVE-2005-0064: cups - Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.0...2005

💬Community

1
Bugzilla
CVE-2005-0064 security flaw2018-08-16
CVE-2005-0064 — Xpdf vulnerability | cvebase