CVE-2008-2950
published 2008-07-07CVE-2008-2950: The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor…
PriorityP351high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
14.25%
96.2th percentile
The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | poppler | < poppler 0.8.4-1.1 (bookworm) | poppler 0.8.4-1.1 (bookworm) |
| debian | xpdf | < poppler 0.8.4-1.1 (bookworm) | poppler 0.8.4-1.1 (bookworm) |
| freedesktop | poppler | >= 0 < 0.8.4-1.1 | 0.8.4-1.1 |
| freedesktop | poppler | >= 0 < 0.8.4-1.1 | 0.8.4-1.1 |
| freedesktop | poppler | >= 0 < 0.8.4-1.1 | 0.8.4-1.1 |
| freedesktop | poppler | >= 0 < 0.8.4-1.1 | 0.8.4-1.1 |
| poppler | poppler | <= 0.8.4 | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5MEDIUM
vendor_redhat7.5HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wx8f-9362-6rfq: The Page destructor in Page
ghsa_unreviewed·2022-05-01
CVE-2008-2950 [HIGH] CWE-94 GHSA-wx8f-9362-6rfq: The Page destructor in Page
The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.
OSV
CVE-2008-2950: The Page destructor in Page
osv·2008-07-07·CVSS 7.5
CVE-2008-2950 [HIGH] CVE-2008-2950: The Page destructor in Page
The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.
Ubuntu
poppler vulnerability
vendor_ubuntu·2008-07-28
CVE-2008-2950 poppler vulnerability
Title: poppler vulnerability
Summary: poppler vulnerability
Felipe Andres Manzano discovered that poppler did not correctly initialize
certain page widgets. If a user were tricked into viewing a malicious
PDF file, a remote attacker could exploit this to crash applications
linked against poppler, leading to a denial of service.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
poppler: uninitialized pointer free (oCERT-2008-007)
vendor_redhat·2008-07-07·CVSS 7.5
CVE-2008-2950 [HIGH] poppler: uninitialized pointer free (oCERT-2008-007)
poppler: uninitialized pointer free (oCERT-2008-007)
The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.
Statement: Not vulnerable. This issue did not affect the versions of poppler as shipped with Red Hat Enterprise Linux 5, or other PDF parsing applications derived from the xpdf code as shipped in Red Hat Enterprise Linux 2.1, 3, 4, or 5.
Debian
CVE-2008-2950: poppler - The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier delete...
vendor_debian·2008·CVSS 7.5
CVE-2008-2950 [HIGH] CVE-2008-2950: poppler - The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier delete...
The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.
Scope: local
bookworm: resolved (fixed in 0.8.4-1.1)
bullseye: resolved (fixed in 0.8.4-1.1)
forky: resolved (fixed in 0.8.4-1.1)
sid: resolved (fixed in 0.8.4-1.1)
trixie: resolved (fixed in 0.8.4-1.1)
No detection rules found.
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00006.htmlhttp://secunia.com/advisories/30963http://secunia.com/advisories/31002http://secunia.com/advisories/31167http://secunia.com/advisories/31267http://secunia.com/advisories/31405http://security.gentoo.org/glsa/glsa-200807-04.xmlhttp://securityreason.com/securityalert/3977http://wiki.rpath.com/Advisories:rPSA-2008-0223http://www.mandriva.com/security/advisories?name=MDVSA-2008:146http://www.ocert.org/advisories/ocert-2008-007.htmlhttp://www.securityfocus.com/archive/1/493980/100/0/threadedhttp://www.securityfocus.com/archive/1/494142/100/0/threadedhttp://www.securityfocus.com/bid/30107http://www.securitytracker.com/id?1020435http://www.ubuntu.com/usn/usn-631-1http://www.vupen.com/english/advisories/2008/2024/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/43619https://www.exploit-db.com/exploits/6032https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00161.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-07/msg00006.htmlhttp://secunia.com/advisories/30963http://secunia.com/advisories/31002http://secunia.com/advisories/31167http://secunia.com/advisories/31267http://secunia.com/advisories/31405http://security.gentoo.org/glsa/glsa-200807-04.xmlhttp://securityreason.com/securityalert/3977http://wiki.rpath.com/Advisories:rPSA-2008-0223http://www.mandriva.com/security/advisories?name=MDVSA-2008:146http://www.ocert.org/advisories/ocert-2008-007.htmlhttp://www.securityfocus.com/archive/1/493980/100/0/threadedhttp://www.securityfocus.com/archive/1/494142/100/0/threadedhttp://www.securityfocus.com/bid/30107http://www.securitytracker.com/id?1020435http://www.ubuntu.com/usn/usn-631-1http://www.vupen.com/english/advisories/2008/2024/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/43619https://www.exploit-db.com/exploits/6032https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00161.html
2008-07-07
Published