Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-4352

Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, and other products, allows remote attackers to trigger memory corruption and execute arbitrary code via a crafted PDF file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.217
EPSS Ranking 95.4%
CVSS Severity
CVSS v2 Score 7.6
References
Products affected by CVE-2007-4352
  • Xpdf » Xpdf » Version: 3.0.1_pl1
    cpe:2.3:a:xpdf:xpdf:3.0.1_pl1


Contact Us

Shodan ® - All rights reserved