CVE-2006-0301

EPSS 3.1%

libextractor - several

Published: 1/30/2006Modified: 4/28/2026

Description

Heap-based buffer overflow in Splash.cc in xpdf, as used in other products such as (1) poppler, (2) kdegraphics, (3) gpdf, (4) pdfkit.framework, and others, allows attackers to cause a denial of service and possibly execute arbitrary code via crafted splash images that produce certain values that exceed the width or height of the associated bitmap.

Affected packages (7)

References (1)