Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-2097

xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.7%
CVSS Severity
CVSS v2 Score 2.1
References
Products affected by CVE-2005-2097
  • Kde » Kpdf » Version: Any
    cpe:2.3:a:kde:kpdf:*
  • Xpdf » Xpdf » Version: 3.0
    cpe:2.3:a:xpdf:xpdf:3.0
  • Xpdf » Xpdf » Version: 3.0_pl2
    cpe:2.3:a:xpdf:xpdf:3.0_pl2
  • Xpdf » Xpdf » Version: 3.0_pl3
    cpe:2.3:a:xpdf:xpdf:3.0_pl3


Contact Us

Shodan ® - All rights reserved