cbcvebase.
CVE-2005-3624
published 2005-12-31

CVE-2005-3624: The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to…

PriorityP417medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
2.30%
81.4th percentile
The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Affected

114 ranges· showing 25
VendorProductVersion rangeFixed in
applecups>= 0 < 1.1.22-71.1.22-7
applecups>= 0 < 1.1.22-71.1.22-7
applecups>= 0 < 1.1.22-71.1.22-7
applecups>= 0 < 1.1.22-71.1.22-7
conectivalinux
debiancups< cups 1.1.22-7 (bookworm)cups 1.1.22-7 (bookworm)
debiandebian_linux
debiandebian_linux
debianlibextractor< cups 1.1.22-7 (bookworm)cups 1.1.22-7 (bookworm)
debianpoppler< cups 1.1.22-7 (bookworm)cups 1.1.22-7 (bookworm)
debianxpdf< cups 1.1.22-7 (bookworm)cups 1.1.22-7 (bookworm)
debianxpdf
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
freedesktoppoppler>= 0 < 0.4.4-10.4.4-1
freedesktoppoppler>= 0 < 0.4.4-10.4.4-1
freedesktoppoppler>= 0 < 0.4.4-10.4.4-1
freedesktoppoppler>= 0 < 0.4.4-10.4.4-1
gnomegpdf
gnulibextractor>= 0 < 0.5.9-10.5.9-1
gnulibextractor>= 0 < 0.5.9-10.5.9-1
gnulibextractor>= 0 < 0.5.9-10.5.9-1
gnulibextractor>= 0 < 0.5.9-10.5.9-1

CVSS provenance

nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.