NVD
- Id
- 56477
- Name
- CVE-2007-4352
- Description
- Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, and other products, allows remote attackers to trigger memory corruption and execute arbitrary code via a crafted PDF file.
- Reject
- CVSS Version
- 2
- CVSS Score
- 7.6
- Severity
- High
- CVSS Base Score
- 7.6
- CVSS Impact Subscore
- 10
- CVSS Exploit Subscore
- 4.9
- CVSS Vector
- (AV:N/AC:H/Au:N/C:C/I:C/A:C)
- Pub Date
- 2017-01-07
- Published
- 2007-11-07
- Modified Date
- 2011-03-07
- Seq
- 2007-4352
Related NVD References
Id | NVD Id | NVD No. | Reference | Actions |
---|---|---|---|---|
287701 | 56477 | CVE-2007-4352 | oval:org.mitre.oval:def:9979 | View |
287702 | 56477 | CVE-2007-4352 | GLSA-200711-22 | View |
287703 | 56477 | CVE-2007-4352 | GLSA-200711-34 | View |
287704 | 56477 | CVE-2007-4352 | GLSA-200805-13 | View |
287705 | 56477 | CVE-2007-4352 | SSA:2007-316-01 | View |
287706 | 56477 | CVE-2007-4352 | http://support.novell.com/techcenter/psdb/1d5fd29802b2ef7e342e733731f1e933.html | View |
287707 | 56477 | CVE-2007-4352 | http://support.novell.com/techcenter/psdb/3867a5092daac43cd6a92e6107d9fbce.html | View |
287708 | 56477 | CVE-2007-4352 | http://support.novell.com/techcenter/psdb/43ad7b3569dba59e7ba07677edc01cad.html | View |
287709 | 56477 | CVE-2007-4352 | http://support.novell.com/techcenter/psdb/da3498f05433976cc548cc4eaf8349c8.html | View |
287710 | 56477 | CVE-2007-4352 | http://support.novell.com/techcenter/psdb/f83e024a65d69ebc810d2117815b940d.html | View |
287711 | 56477 | CVE-2007-4352 | DSA-1480 | View |
287712 | 56477 | CVE-2007-4352 | DSA-1509 | View |
287713 | 56477 | CVE-2007-4352 | DSA-1537 | View |
287714 | 56477 | CVE-2007-4352 | http://www.kde.org/info/security/advisory-20071107-1.txt | View |
287715 | 56477 | CVE-2007-4352 | MDKSA-2007:219 | View |
287716 | 56477 | CVE-2007-4352 | MDKSA-2007:220 | View |
287717 | 56477 | CVE-2007-4352 | MDKSA-2007:221 | View |
287718 | 56477 | CVE-2007-4352 | MDKSA-2007:222 | View |
287719 | 56477 | CVE-2007-4352 | MDKSA-2007:223 | View |
287720 | 56477 | CVE-2007-4352 | MDKSA-2007:227 | View |
287721 | 56477 | CVE-2007-4352 | MDKSA-2007:228 | View |
287722 | 56477 | CVE-2007-4352 | MDKSA-2007:230 | View |
287723 | 56477 | CVE-2007-4352 | SUSE-SA:2007:060 | View |
287724 | 56477 | CVE-2007-4352 | RHSA-2007:1021 | View |
287725 | 56477 | CVE-2007-4352 | RHSA-2007:1022 | View |
287726 | 56477 | CVE-2007-4352 | RHSA-2007:1024 | View |
287727 | 56477 | CVE-2007-4352 | RHSA-2007:1025 | View |
287728 | 56477 | CVE-2007-4352 | RHSA-2007:1026 | View |
287729 | 56477 | CVE-2007-4352 | RHSA-2007:1027 | View |
287730 | 56477 | CVE-2007-4352 | RHSA-2007:1029 | View |
287731 | 56477 | CVE-2007-4352 | RHSA-2007:1030 | View |
287732 | 56477 | CVE-2007-4352 | 20071107 Secunia Research: Xpdf "Stream.cc" Multiple Vulnerabilities | View |
287733 | 56477 | CVE-2007-4352 | 26367 | View |
287734 | 56477 | CVE-2007-4352 | 1018905 | View |
287735 | 56477 | CVE-2007-4352 | USN-542-1 | View |
287736 | 56477 | CVE-2007-4352 | USN-542-2 | View |
287737 | 56477 | CVE-2007-4352 | ADV-2007-3774 | View |
287738 | 56477 | CVE-2007-4352 | ADV-2007-3775 | View |
287739 | 56477 | CVE-2007-4352 | ADV-2007-3776 | View |
287740 | 56477 | CVE-2007-4352 | ADV-2007-3779 | View |
287741 | 56477 | CVE-2007-4352 | ADV-2007-3786 | View |
287742 | 56477 | CVE-2007-4352 | xpdf-dctstreamread-memory-corruption(38306) | View |
287743 | 56477 | CVE-2007-4352 | https://issues.rpath.com/browse/RPL-1926 | View |
287744 | 56477 | CVE-2007-4352 | FEDORA-2007-4031 | View |
287745 | 56477 | CVE-2007-4352 | FEDORA-2007-3031 | View |
287746 | 56477 | CVE-2007-4352 | FEDORA-2007-3059 | View |
287747 | 56477 | CVE-2007-4352 | FEDORA-2007-3100 | View |
287748 | 56477 | CVE-2007-4352 | FEDORA-2007-3390 | View |
287749 | 56477 | CVE-2007-4352 | FEDORA-2007-750 | View |
Related JVN
Id | Name | Title | Summary | Cveinfo Name | Cveinfo Id | Nvdinfo Name | Nvdinfo Id | Cvssv2 | Cvssv3 | Jvnurl | Published Date | Last Updated Date | Actions |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
52254 | JVNDB-2007-000944 | Xpdf の DCTStream::readProgressiveDataUnit メソッドにおけるメモリ破壊の脆弱性 | Xpdf の xpdf/Stream.cc には、DCTStream::readProgressiveDataUnit メソッドにおいて、不正な PDF ファイルを処理することで、メモリ破壊が発生する脆弱性が存在します。 | CVE-2007-4352 | 27707 | CVE-2007-4352 | 56477 | 7.6 | http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-000944.html | 2007-11-07 | 2008-06-20 | View |