mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-12-13 23:37:08 +00:00
316 lines
9.7 KiB
JSON
316 lines
9.7 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "cve@mitre.org",
|
|
"ID" : "CVE-2005-3627",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "n/a",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDecode stream with (1) a large \"number of components\" value that is not checked by DCTStream::readBaselineSOF or DCTStream::readProgressiveSOF, (2) a large \"Huffman table index\" value that is not checked by DCTStream::readHuffmanTables, and (3) certain uses of the scanInfo.numComps value by DCTStream::readScanInfo."
|
|
}
|
|
]
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"url" : "http://scary.beasts.org/security/CESA-2005-003.txt"
|
|
},
|
|
{
|
|
"url" : "http://www.kde.org/info/security/advisory-20051207-2.txt"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2005/dsa-931"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2005/dsa-932"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2005/dsa-937"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2005/dsa-938"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2005/dsa-940"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2006/dsa-936"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2006/dsa-950"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2006/dsa-961"
|
|
},
|
|
{
|
|
"url" : "http://www.debian.org/security/2006/dsa-962"
|
|
},
|
|
{
|
|
"url" : "http://www.securityfocus.com/archive/1/archive/1/427990/100/0/threaded"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00030.html"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00031.html"
|
|
},
|
|
{
|
|
"url" : "http://www.securityfocus.com/archive/1/archive/1/427053/100/0/threaded"
|
|
},
|
|
{
|
|
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200601-02.xml"
|
|
},
|
|
{
|
|
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200601-17.xml"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:010"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:003"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:004"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:005"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:006"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:008"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:012"
|
|
},
|
|
{
|
|
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2006:011"
|
|
},
|
|
{
|
|
"url" : "http://rhn.redhat.com/errata/RHSA-2006-0177.html"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2006-0160.html"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2006-0163.html"
|
|
},
|
|
{
|
|
"url" : "ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.15/SCOSA-2006.15.txt"
|
|
},
|
|
{
|
|
"url" : "ftp://patches.sgi.com/support/free/security/advisories/20051201-01-U"
|
|
},
|
|
{
|
|
"url" : "ftp://patches.sgi.com/support/free/security/advisories/20060101-01-U"
|
|
},
|
|
{
|
|
"url" : "ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U"
|
|
},
|
|
{
|
|
"url" : "http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.474747"
|
|
},
|
|
{
|
|
"url" : "http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.472683"
|
|
},
|
|
{
|
|
"url" : "http://sunsolve.sun.com/search/document.do?assetkey=1-26-102972-1"
|
|
},
|
|
{
|
|
"url" : "http://lists.suse.com/archive/suse-security-announce/2006-Jan/0001.html"
|
|
},
|
|
{
|
|
"url" : "http://www.trustix.org/errata/2006/0002/"
|
|
},
|
|
{
|
|
"url" : "http://www.ubuntulinux.org/support/documentation/usn/usn-236-1"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00011.html"
|
|
},
|
|
{
|
|
"url" : "http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00010.html"
|
|
},
|
|
{
|
|
"url" : "http://www.securityfocus.com/bid/16143"
|
|
},
|
|
{
|
|
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10200"
|
|
},
|
|
{
|
|
"url" : "http://www.vupen.com/english/advisories/2006/0047"
|
|
},
|
|
{
|
|
"url" : "http://www.vupen.com/english/advisories/2007/2280"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18303"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18312"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18313"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18329"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18332"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18334"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18335"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18387"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18416"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18338"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18349"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18375"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18385"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18389"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18423"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18448"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18398"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18407"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18534"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18582"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18517"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18554"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18642"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18644"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18674"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18675"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18679"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18908"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18913"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/19230"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/19377"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18425"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18463"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18147"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18373"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18380"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18414"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18428"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/18436"
|
|
},
|
|
{
|
|
"url" : "http://secunia.com/advisories/25729"
|
|
},
|
|
{
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/24024"
|
|
},
|
|
{
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/24025"
|
|
}
|
|
]
|
|
}
|
|
}
|