CVE-2010-2575
published 2010-08-30CVE-2010-2575: Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in…
PriorityP433medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
4.65%
90.7th percentile
Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in KDE SC 4.3.0 through 4.5.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image in a PDB file.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | okular | < okular 4:4.4.5-2 (bookworm) | okular 4:4.4.5-2 (bookworm) |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | kde_sc | — | — |
| kde | okular | >= 0 < 4:4.4.5-2 | 4:4.4.5-2 |
| kde | okular | >= 0 < 4:4.4.5-2 | 4:4.4.5-2 |
| kde | okular | >= 0 < 4:4.4.5-2 | 4:4.4.5-2 |
| kde | okular | >= 0 < 4:4.4.5-2 | 4:4.4.5-2 |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
okular vulnerability
vendor_ubuntu·2010-08-27·CVSS 6.8
CVE-2010-2575 [MEDIUM] okular vulnerability
Title: okular vulnerability
Summary: A heap-based buffer overflow in okular.
Stefan Cornelius of Secunia Research discovered a boundary error during
RLE decompression in the "TranscribePalmImageToJPEG()" function in
generators/plucker/inplug/image.cpp of okular when processing images
embedded in PDB files, which can be exploited to cause a heap-based
buffer overflow. (CVE-2010-2575)
Instructions: After a standard system update you need to restart any running instances
of okular to make all the necessary changes.
Red Hat
kdegraphics: a boundary error in Okular
vendor_redhat·2010-08-25·CVSS 6.8
CVE-2010-2575 [MEDIUM] kdegraphics: a boundary error in Okular
kdegraphics: a boundary error in Okular
Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in KDE SC 4.3.0 through 4.5.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image in a PDB file.
Package: kdegraphics (Red Hat Enterprise Linux 6) - Will not fix
Debian
CVE-2010-2575: okular - Heap-based buffer overflow in the RLE decompression functionality in the Transcr...
vendor_debian·2010·CVSS 6.8
CVE-2010-2575 [MEDIUM] CVE-2010-2575: okular - Heap-based buffer overflow in the RLE decompression functionality in the Transcr...
Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in KDE SC 4.3.0 through 4.5.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image in a PDB file.
Scope: local
bookworm: resolved (fixed in 4:4.4.5-2)
bullseye: resolved (fixed in 4:4.4.5-2)
forky: resolved (fixed in 4:4.4.5-2)
sid: resolved (fixed in 4:4.4.5-2)
trixie: resolved (fixed in 4:4.4.5-2)
GHSA
GHSA-gp5q-hh2p-748v: Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image
ghsa_unreviewed·2022-05-14
CVE-2010-2575 [MEDIUM] CWE-119 GHSA-gp5q-hh2p-748v: Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image
Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in KDE SC 4.3.0 through 4.5.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image in a PDB file.
OSV
CVE-2010-2575: Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image
osv·2010-08-30·CVSS 6.8
CVE-2010-2575 [MEDIUM] CVE-2010-2575: Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image
Heap-based buffer overflow in the RLE decompression functionality in the TranscribePalmImageToJPEG function in generators/plucker/inplug/image.cpp in Okular in KDE SC 4.3.0 through 4.5.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image in a PDB file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-2575 kdegraphics: integer overflow error in Okular [fedora-all]
bugzilla·2010-08-25·CVSS 6.8
CVE-2010-2575 [MEDIUM] CVE-2010-2575 kdegraphics: integer overflow error in Okular [fedora-all]
CVE-2010-2575 kdegraphics: integer overflow error in Okular [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=626844
Please note: this issue affects multiple s
Bugzilla
CVE-2010-2575 kdegraphics: a boundary error in Okular
bugzilla·2010-08-24·CVSS 6.8
CVE-2010-2575 [MEDIUM] CVE-2010-2575 kdegraphics: a boundary error in Okular
CVE-2010-2575 kdegraphics: a boundary error in Okular
An integer overflow flaw that could lead to a heap-based buffer overflow was found in Okular by Secunia. If a user were to open a malicious PDF or PostScript file, it could cause Okular to crash or, potentially, lead to the execution of arbitrary code with the privileges of the user running Okular.
This issue has been assigned the name CVE-2010-2575 and only affects KDE4.
Discussion:
Created attachment 440676
patch from upstream to correct the issue
This patch applies to 4.3, 4.4, and 4.5.
---
This is now public:
http://kde.org/info/security/advisory-20100825-1.txt
---
Created kdegraphics tracking bugs for this issue
Affects: fedora-all [bug 627289]
http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046448.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-August/046524.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-August/046542.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-10/msg00000.htmlhttp://secunia.com/advisories/40952http://secunia.com/advisories/41086http://secunia.com/advisories/41132http://secunia.com/secunia_research/2010-109/http://slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.340142http://www.kde.org/info/security/advisory-20100825-1.txthttp://www.mandriva.com/security/advisories?name=MDVSA-2010:162http://www.osvdb.org/67454http://www.securityfocus.com/archive/1/513341/100/0/threadedhttp://www.ubuntu.com/usn/USN-979-1http://www.vupen.com/english/advisories/2010/2178http://www.vupen.com/english/advisories/2010/2179http://www.vupen.com/english/advisories/2010/2202http://www.vupen.com/english/advisories/2010/2206http://www.vupen.com/english/advisories/2010/2219http://www.vupen.com/english/advisories/2010/2230https://bugzilla.redhat.com/show_bug.cgi?id=627289https://exchange.xforce.ibmcloud.com/vulnerabilities/61371http://lists.fedoraproject.org/pipermail/package-announce/2010-August/046448.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-August/046524.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-August/046542.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-10/msg00000.htmlhttp://secunia.com/advisories/40952http://secunia.com/advisories/41086http://secunia.com/advisories/41132http://secunia.com/secunia_research/2010-109/http://slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.340142http://www.kde.org/info/security/advisory-20100825-1.txthttp://www.mandriva.com/security/advisories?name=MDVSA-2010:162http://www.osvdb.org/67454http://www.securityfocus.com/archive/1/513341/100/0/threadedhttp://www.ubuntu.com/usn/USN-979-1http://www.vupen.com/english/advisories/2010/2178http://www.vupen.com/english/advisories/2010/2179http://www.vupen.com/english/advisories/2010/2202http://www.vupen.com/english/advisories/2010/2206http://www.vupen.com/english/advisories/2010/2219http://www.vupen.com/english/advisories/2010/2230https://bugzilla.redhat.com/show_bug.cgi?id=627289https://exchange.xforce.ibmcloud.com/vulnerabilities/61371
2010-08-30
Published