CVE-2005-3624

UnknownEPSS 2.30%

Last modified

CVE-2005-3624 is a vulnerability of currently unknown severity. The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.. EPSS estimates a 2.30% chance of exploitation in the next 30 days.

Description

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

Metrics

EPSS Probability
2.30%

81.1th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersionsUpdate
Easy Software ProductsCups1.1.22
Easy Software ProductsCups1.1.22_rc1
Easy Software ProductsCups1.1.23
Easy Software ProductsCups1.1.23_rc1
KdeKdegraphics3.2
KdeKdegraphics3.4.3
KdeKoffice1.4
KdeKoffice1.4.1
KdeKoffice1.4.2
KdeKpdf3.2
KdeKpdf3.4.3
KdeKword1.4.2
LibextractorLibextractorAll versions
PopplerPoppler0.4.2
SgiPropack3.0Sp6
TetexTetex1.0.7
TetexTetex2.0
TetexTetex2.0.1
TetexTetex2.0.2
TetexTetex3.0
XpdfXpdf3.0
ConectivaLinux10.0
DebianDebian Linux3.0
DebianDebian Linux3.1
GentooLinuxAll versions
MandrakesoftMandrake Linux10.1
MandrakesoftMandrake Linux10.2
MandrakesoftMandrake Linux2006
MandrakesoftMandrake Linux Corporate Server2.1
MandrakesoftMandrake Linux Corporate Server3.0
RedhatEnterprise Linux2.1
RedhatEnterprise Linux3.0
RedhatEnterprise Linux4.0
RedhatEnterprise Linux Desktop3.0
RedhatEnterprise Linux Desktop4.0
RedhatFedora Corecore_1.0
RedhatFedora Corecore_2.0
RedhatFedora Corecore_3.0
RedhatFedora Corecore_4.0
RedhatLinux7.3
RedhatLinux9.0
RedhatLinux Advanced Workstation2.1
ScoOpenserver5.0.7
ScoOpenserver6.0
SlackwareSlackware Linux9.0
SlackwareSlackware Linux9.1
SlackwareSlackware Linux10.0
SlackwareSlackware Linux10.1
SlackwareSlackware Linux10.2
SuseSuse Linux1.0

Showing 50 of 73 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2005-3624?
The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.
How severe is CVE-2005-3624?
Severity scoring for CVE-2005-3624 is pending analysis. The EPSS model estimates a 2.30% probability of exploitation in the next 30 days.
How do I fix CVE-2005-3624?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2005-3624?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST