CVE-2005-0064
published 2005-05-02CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file…
PriorityP334high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
7.22%
93.7th percentile
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.
Affected
42 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | >= 0 < 1.1.22-6 | 1.1.22-6 |
| apple | cups | >= 0 < 1.1.22-6 | 1.1.22-6 |
| apple | cups | >= 0 < 1.1.22-6 | 1.1.22-6 |
| apple | cups | >= 0 < 1.1.22-6 | 1.1.22-6 |
| debian | cups | < cups 1.1.22-6 (bookworm) | cups 1.1.22-6 (bookworm) |
| debian | xpdf | < cups 1.1.22-6 (bookworm) | cups 1.1.22-6 (bookworm) |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
| xpdf | xpdf | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
xpdf, CUPS vulnerabilities
vendor_ubuntu·2005-01-19
CVE-2005-0064 xpdf, CUPS vulnerabilities
Title: xpdf, CUPS vulnerabilities
Summary: xpdf, CUPS vulnerabilities
A buffer overflow has been found in the xpdf viewer. An insufficient
input validation of the encryption key length could be exploited by an
attacker providing a specially crafted PDF file which, when processed
by xpdf, could result in abnormal program termination or the execution
of attacker supplied program code with the user's privileges.
The Common UNIX Printing System (CUPS) uses the same code to print PDF
files. In this case, this bug could be exploited to gain the
privileges of the CUPS print server (by default, user cupsys).
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
security flaw
vendor_redhat·2005-01-18·CVSS 7.5
CVE-2005-0064 [HIGH] security flaw
security flaw
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.
Debian
CVE-2005-0064: cups - Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.0...
vendor_debian·2005·CVSS 7.5
CVE-2005-0064 [HIGH] CVE-2005-0064: cups - Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.0...
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.
Scope: local
bookworm: resolved (fixed in 1.1.22-6)
bullseye: resolved (fixed in 1.1.22-6)
forky: resolved (fixed in 1.1.22-6)
sid: resolved (fixed in 1.1.22-6)
trixie: resolved (fixed in 1.1.22-6)
GHSA
GHSA-h375-h7pm-622c: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt
ghsa_unreviewed·2022-05-03
CVE-2005-0064 [HIGH] GHSA-h375-h7pm-622c: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.
OSV
CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt
osv·2005-05-02·CVSS 7.5
CVE-2005-0064 [HIGH] CVE-2005-0064: Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt
Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.
No detection rules found.
ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.00pl3.patchftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.42/SCOSA-2005.42.txthttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000921http://marc.info/?l=bugtraq&m=110625368019554&w=2http://secunia.com/advisories/17277http://www.debian.org/security/2005/dsa-645http://www.debian.org/security/2005/dsa-648http://www.idefense.com/application/poi/display?id=186&type=vulnerabilitieshttp://www.mandriva.com/security/advisories?name=MDKSA-2005:016http://www.mandriva.com/security/advisories?name=MDKSA-2005:017http://www.mandriva.com/security/advisories?name=MDKSA-2005:018http://www.mandriva.com/security/advisories?name=MDKSA-2005:019http://www.mandriva.com/security/advisories?name=MDKSA-2005:020http://www.mandriva.com/security/advisories?name=MDKSA-2005:021http://www.redhat.com/support/errata/RHSA-2005-026.htmlhttp://www.redhat.com/support/errata/RHSA-2005-034.htmlhttp://www.redhat.com/support/errata/RHSA-2005-053.htmlhttp://www.redhat.com/support/errata/RHSA-2005-057.htmlhttp://www.redhat.com/support/errata/RHSA-2005-059.htmlhttp://www.redhat.com/support/errata/RHSA-2005-066.htmlhttp://www.trustix.org/errata/2005/0003/https://bugzilla.fedora.us/show_bug.cgi?id=2352https://bugzilla.fedora.us/show_bug.cgi?id=2353https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11781https://security.gentoo.org/glsa/200501-28https://security.gentoo.org/glsa/200502-10ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.00pl3.patchftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.42/SCOSA-2005.42.txthttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000921http://marc.info/?l=bugtraq&m=110625368019554&w=2http://secunia.com/advisories/17277http://www.debian.org/security/2005/dsa-645http://www.debian.org/security/2005/dsa-648http://www.idefense.com/application/poi/display?id=186&type=vulnerabilitieshttp://www.mandriva.com/security/advisories?name=MDKSA-2005:016http://www.mandriva.com/security/advisories?name=MDKSA-2005:017http://www.mandriva.com/security/advisories?name=MDKSA-2005:018http://www.mandriva.com/security/advisories?name=MDKSA-2005:019http://www.mandriva.com/security/advisories?name=MDKSA-2005:020http://www.mandriva.com/security/advisories?name=MDKSA-2005:021http://www.redhat.com/support/errata/RHSA-2005-026.htmlhttp://www.redhat.com/support/errata/RHSA-2005-034.htmlhttp://www.redhat.com/support/errata/RHSA-2005-053.htmlhttp://www.redhat.com/support/errata/RHSA-2005-057.htmlhttp://www.redhat.com/support/errata/RHSA-2005-059.htmlhttp://www.redhat.com/support/errata/RHSA-2005-066.htmlhttp://www.trustix.org/errata/2005/0003/https://bugzilla.fedora.us/show_bug.cgi?id=2352https://bugzilla.fedora.us/show_bug.cgi?id=2353https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11781https://security.gentoo.org/glsa/200501-28https://security.gentoo.org/glsa/200502-10
2005-05-02
Published