CVE
- Id
- 14829
- CVE No.
- CVE-2005-3625
- Status
- Candidate
- Description
- Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."
- Phase
- Assigned (20051116)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
113801 | 14829 | CVE-2005-3625 | MISC:http://scary.beasts.org/security/CESA-2005-003.txt | View |
113802 | 14829 | CVE-2005-3625 | CONFIRM:http://www.kde.org/info/security/advisory-20051207-2.txt | View |
113803 | 14829 | CVE-2005-3625 | DEBIAN:DSA-931 | View |
113804 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2005/dsa-931 | View |
113805 | 14829 | CVE-2005-3625 | DEBIAN:DSA-932 | View |
113806 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2005/dsa-932 | View |
113807 | 14829 | CVE-2005-3625 | DEBIAN:DSA-937 | View |
113808 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2005/dsa-937 | View |
113809 | 14829 | CVE-2005-3625 | DEBIAN:DSA-938 | View |
113810 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2005/dsa-938 | View |
113811 | 14829 | CVE-2005-3625 | DEBIAN:DSA-940 | View |
113812 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2005/dsa-940 | View |
113813 | 14829 | CVE-2005-3625 | DEBIAN:DSA-936 | View |
113814 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2006/dsa-936 | View |
113815 | 14829 | CVE-2005-3625 | DEBIAN:DSA-950 | View |
113816 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2006/dsa-950 | View |
113817 | 14829 | CVE-2005-3625 | DEBIAN:DSA-961 | View |
113818 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2006/dsa-961 | View |
113819 | 14829 | CVE-2005-3625 | DEBIAN:DSA-962 | View |
113820 | 14829 | CVE-2005-3625 | URL:http://www.debian.org/security/2006/dsa-962 | View |
113821 | 14829 | CVE-2005-3625 | FEDORA:FLSA:175404 | View |
113822 | 14829 | CVE-2005-3625 | URL:http://www.securityfocus.com/archive/1/archive/1/427990/100/0/threaded | View |
113823 | 14829 | CVE-2005-3625 | FEDORA:FEDORA-2005-025 | View |
113824 | 14829 | CVE-2005-3625 | URL:http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00030.html | View |
113825 | 14829 | CVE-2005-3625 | FEDORA:FEDORA-2005-026 | View |
113826 | 14829 | CVE-2005-3625 | URL:http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00031.html | View |
113827 | 14829 | CVE-2005-3625 | FEDORA:FLSA-2006:176751 | View |
113828 | 14829 | CVE-2005-3625 | URL:http://www.securityfocus.com/archive/1/archive/1/427053/100/0/threaded | View |
113829 | 14829 | CVE-2005-3625 | GENTOO:GLSA-200601-02 | View |
113830 | 14829 | CVE-2005-3625 | URL:http://www.gentoo.org/security/en/glsa/glsa-200601-02.xml | View |
113831 | 14829 | CVE-2005-3625 | GENTOO:GLSA-200601-17 | View |
113832 | 14829 | CVE-2005-3625 | URL:http://www.gentoo.org/security/en/glsa/glsa-200601-17.xml | View |
113833 | 14829 | CVE-2005-3625 | MANDRAKE:MDKSA-2006:010 | View |
113834 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:010 | View |
113835 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:003 | View |
113836 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:003 | View |
113837 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:004 | View |
113838 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:004 | View |
113839 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:005 | View |
113840 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:005 | View |
113841 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:006 | View |
113842 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:006 | View |
113843 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:008 | View |
113844 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:008 | View |
113845 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:012 | View |
113846 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:012 | View |
113847 | 14829 | CVE-2005-3625 | MANDRIVA:MDKSA-2006:011 | View |
113848 | 14829 | CVE-2005-3625 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:011 | View |
113849 | 14829 | CVE-2005-3625 | REDHAT:RHSA-2006:0177 | View |
113850 | 14829 | CVE-2005-3625 | URL:http://rhn.redhat.com/errata/RHSA-2006-0177.html | View |
113851 | 14829 | CVE-2005-3625 | REDHAT:RHSA-2006:0160 | View |
113852 | 14829 | CVE-2005-3625 | URL:http://www.redhat.com/support/errata/RHSA-2006-0160.html | View |
113853 | 14829 | CVE-2005-3625 | REDHAT:RHSA-2006:0163 | View |
113854 | 14829 | CVE-2005-3625 | URL:http://www.redhat.com/support/errata/RHSA-2006-0163.html | View |
113855 | 14829 | CVE-2005-3625 | SCO:SCOSA-2006.15 | View |
113856 | 14829 | CVE-2005-3625 | URL:ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.15/SCOSA-2006.15.txt | View |
113857 | 14829 | CVE-2005-3625 | SGI:20051201-01-U | View |
113858 | 14829 | CVE-2005-3625 | URL:ftp://patches.sgi.com/support/free/security/advisories/20051201-01-U | View |
113859 | 14829 | CVE-2005-3625 | SGI:20060101-01-U | View |
113860 | 14829 | CVE-2005-3625 | URL:ftp://patches.sgi.com/support/free/security/advisories/20060101-01-U | View |
113861 | 14829 | CVE-2005-3625 | SGI:20060201-01-U | View |
113862 | 14829 | CVE-2005-3625 | URL:ftp://patches.sgi.com/support/free/security/advisories/20060201-01-U | View |
113863 | 14829 | CVE-2005-3625 | SLACKWARE:SSA:2006-045-04 | View |
113864 | 14829 | CVE-2005-3625 | URL:http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.474747 | View |
113865 | 14829 | CVE-2005-3625 | SLACKWARE:SSA:2006-045-09 | View |
113866 | 14829 | CVE-2005-3625 | URL:http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.472683 | View |
113867 | 14829 | CVE-2005-3625 | SUNALERT:102972 | View |
113868 | 14829 | CVE-2005-3625 | URL:http://sunsolve.sun.com/search/document.do?assetkey=1-26-102972-1 | View |
113869 | 14829 | CVE-2005-3625 | SUSE:SUSE-SA:2006:001 | View |
113870 | 14829 | CVE-2005-3625 | URL:http://lists.suse.com/archive/suse-security-announce/2006-Jan/0001.html | View |
113871 | 14829 | CVE-2005-3625 | TRUSTIX:2006-0002 | View |
113872 | 14829 | CVE-2005-3625 | URL:http://www.trustix.org/errata/2006/0002/ | View |
113873 | 14829 | CVE-2005-3625 | UBUNTU:USN-236-1 | View |
113874 | 14829 | CVE-2005-3625 | URL:http://www.ubuntulinux.org/support/documentation/usn/usn-236-1 | View |
113875 | 14829 | CVE-2005-3625 | CONFIRM:http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00011.html | View |
113876 | 14829 | CVE-2005-3625 | CONFIRM:http://www.redhat.com/archives/fedora-announce-list/2006-January/msg00010.html | View |
113877 | 14829 | CVE-2005-3625 | BID:16143 | View |
113878 | 14829 | CVE-2005-3625 | URL:http://www.securityfocus.com/bid/16143 | View |
113879 | 14829 | CVE-2005-3625 | OVAL:oval:org.mitre.oval:def:9575 | View |
113880 | 14829 | CVE-2005-3625 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9575 | View |
113881 | 14829 | CVE-2005-3625 | VUPEN:ADV-2006-0047 | View |
113882 | 14829 | CVE-2005-3625 | URL:http://www.vupen.com/english/advisories/2006/0047 | View |
113883 | 14829 | CVE-2005-3625 | VUPEN:ADV-2007-2280 | View |
113884 | 14829 | CVE-2005-3625 | URL:http://www.vupen.com/english/advisories/2007/2280 | View |
113885 | 14829 | CVE-2005-3625 | SECUNIA:18303 | View |
113886 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18303 | View |
113887 | 14829 | CVE-2005-3625 | SECUNIA:18312 | View |
113888 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18312 | View |
113889 | 14829 | CVE-2005-3625 | SECUNIA:18313 | View |
113890 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18313 | View |
113891 | 14829 | CVE-2005-3625 | SECUNIA:18329 | View |
113892 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18329 | View |
113893 | 14829 | CVE-2005-3625 | SECUNIA:18332 | View |
113894 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18332 | View |
113895 | 14829 | CVE-2005-3625 | SECUNIA:18334 | View |
113896 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18334 | View |
113897 | 14829 | CVE-2005-3625 | SECUNIA:18335 | View |
113898 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18335 | View |
113899 | 14829 | CVE-2005-3625 | SECUNIA:18387 | View |
113900 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18387 | View |
113901 | 14829 | CVE-2005-3625 | SECUNIA:18416 | View |
113902 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18416 | View |
113903 | 14829 | CVE-2005-3625 | SECUNIA:18338 | View |
113904 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18338 | View |
113905 | 14829 | CVE-2005-3625 | SECUNIA:18349 | View |
113906 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18349 | View |
113907 | 14829 | CVE-2005-3625 | SECUNIA:18375 | View |
113908 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18375 | View |
113909 | 14829 | CVE-2005-3625 | SECUNIA:18385 | View |
113910 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18385 | View |
113911 | 14829 | CVE-2005-3625 | SECUNIA:18389 | View |
113912 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18389 | View |
113913 | 14829 | CVE-2005-3625 | SECUNIA:18423 | View |
113914 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18423 | View |
113915 | 14829 | CVE-2005-3625 | SECUNIA:18448 | View |
113916 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18448 | View |
113917 | 14829 | CVE-2005-3625 | SECUNIA:18398 | View |
113918 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18398 | View |
113919 | 14829 | CVE-2005-3625 | SECUNIA:18407 | View |
113920 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18407 | View |
113921 | 14829 | CVE-2005-3625 | SECUNIA:18534 | View |
113922 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18534 | View |
113923 | 14829 | CVE-2005-3625 | SECUNIA:18582 | View |
113924 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18582 | View |
113925 | 14829 | CVE-2005-3625 | SECUNIA:18517 | View |
113926 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18517 | View |
113927 | 14829 | CVE-2005-3625 | SECUNIA:18554 | View |
113928 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18554 | View |
113929 | 14829 | CVE-2005-3625 | SECUNIA:18642 | View |
113930 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18642 | View |
113931 | 14829 | CVE-2005-3625 | SECUNIA:18644 | View |
113932 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18644 | View |
113933 | 14829 | CVE-2005-3625 | SECUNIA:18674 | View |
113934 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18674 | View |
113935 | 14829 | CVE-2005-3625 | SECUNIA:18675 | View |
113936 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18675 | View |
113937 | 14829 | CVE-2005-3625 | SECUNIA:18679 | View |
113938 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18679 | View |
113939 | 14829 | CVE-2005-3625 | SECUNIA:18908 | View |
113940 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18908 | View |
113941 | 14829 | CVE-2005-3625 | SECUNIA:18913 | View |
113942 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18913 | View |
113943 | 14829 | CVE-2005-3625 | SECUNIA:19230 | View |
113944 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/19230 | View |
113945 | 14829 | CVE-2005-3625 | SECUNIA:19377 | View |
113946 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/19377 | View |
113947 | 14829 | CVE-2005-3625 | SECUNIA:18425 | View |
113948 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18425 | View |
113949 | 14829 | CVE-2005-3625 | SECUNIA:18463 | View |
113950 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18463 | View |
113951 | 14829 | CVE-2005-3625 | SECUNIA:18147 | View |
113952 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18147 | View |
113953 | 14829 | CVE-2005-3625 | SECUNIA:18373 | View |
113954 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18373 | View |
113955 | 14829 | CVE-2005-3625 | SECUNIA:18380 | View |
113956 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18380 | View |
113957 | 14829 | CVE-2005-3625 | SECUNIA:18414 | View |
113958 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18414 | View |
113959 | 14829 | CVE-2005-3625 | SECUNIA:18428 | View |
113960 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18428 | View |
113961 | 14829 | CVE-2005-3625 | SECUNIA:18436 | View |
113962 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/18436 | View |
113963 | 14829 | CVE-2005-3625 | SECUNIA:25729 | View |
113964 | 14829 | CVE-2005-3625 | URL:http://secunia.com/advisories/25729 | View |
113965 | 14829 | CVE-2005-3625 | XF:xpdf-ccittfaxdecode-dctdecode-dos(24023) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
57808 | JVNDB-2006-000004 | Xpdf の Stream.cc におけるメモリ領域を上書きされる問題 | Xpdf には Stream.cc の DCTStream::readBaselineSOF() 関数、DCTStream::readProgressiveSOF() 関数、DCTStream::readHuffmanTables() 関数、DCTStream::readScanInfo() 関数において入力値の妥当性確認が行われないため、メモリの上書きが可能となる問題が存在します。 | CVE-2005-3627 | 14829 | 7.5 | http://jvndb.jvn.jp/ja/contents/2006/JVNDB-2006-000004.html | View |