Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-1125

Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PDF file that causes the boundaries of a maskColors array to be exceeded.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.073
EPSS Ranking 91.2%
CVSS Severity
CVSS v2 Score 9.3
References
Products affected by CVE-2004-1125
  • Easy Software Products » Cups » Version: 1.1.20
    cpe:2.3:a:easy_software_products:cups:1.1.20
  • Xpdf » Xpdf » Version: 3.0
    cpe:2.3:a:xpdf:xpdf:3.0
  • Kde » Kde » Version: 3.2.3
    cpe:2.3:o:kde:kde:3.2.3
  • Kde » Kde » Version: 3.3.2
    cpe:2.3:o:kde:kde:3.3.2


Contact Us

Shodan ® - All rights reserved