oval:org.mitre.oval:def:10996
Definition Id: oval:org.mitre.oval:def:10996 | |||
Oval ID: | oval:org.mitre.oval:def:10996 | ||
Title: | The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and versions, does not check the return value of the getNextLine function, which allows context-dependent attackers to execute arbitrary code via a PDF file with a crafted Type 1 font that can produce a negative value, leading to a signed-to-unsigned integer conversion error and a buffer overflow. | ||
Description: | The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and versions, does not check the return value of the getNextLine function, which allows context-dependent attackers to execute arbitrary code via a PDF file with a crafted Type 1 font that can produce a negative value, leading to a signed-to-unsigned integer conversion error and a buffer overflow. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2009-4035 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:16636 | |||
Oval ID: | oval:org.mitre.oval:def:16636 | ||
Title: | CentOS Linux 4.x | ||
Description: | The operating system installed on the system is CentOS Linux 4.x | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:centos:centos:4 | Version: | 3 |
Platform(s): | CentOS Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:10996 |
Definition Id: oval:org.mitre.oval:def:15990 | |||
Oval ID: | oval:org.mitre.oval:def:15990 | ||
Title: | Oracle Linux 4.x | ||
Description: | The operating system installed on the system is Oracle Linux 4.x | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:oracle:linux:4 | Version: | 5 |
Platform(s): | Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:10996 |
Definition Id: oval:org.mitre.oval:def:11831 | |||
Oval ID: | oval:org.mitre.oval:def:11831 | ||
Title: | The operating system installed on the system is Red Hat Enterprise Linux 4 | ||
Description: | The operating system installed on the system is Red Hat Enterprise Linux 4. | ||
Family: | unix | Class: | inventory |
Reference(s): | cpe:/o:redhat:enterprise_linux:4 | Version: | 7 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:10996 |