CVE-2007-5392
EPSS 6.6%發布日:2007/11/8修改日:2026/4/28
也稱為:DEBIAN-CVE-2007-5392
描述
Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.
受影響套件(4)
- Debian/cupsfrom 0, < 1.1.22-7
- Debian/libextractorfrom 0, < 0.5.12-1
- Debian/popplerfrom 0, < 0.6.2-1
- Debian/xpdffrom 0, < 3.02-1.3