Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

71 – 80 of 130 results


CVE-2009-0164

Low priority
Ignored

The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks.

2 affected packages

cups, cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups
cupsys
Show less packages

CVE-2009-0163

Medium priority
Fixed

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TIFF image, which is not properly...

2 affected packages

cups, cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups
cupsys
Show less packages

CVE-2009-1188

Medium priority

Some fixes available 34 of 74

Integer overflow in the JBIG2 decoding feature in the SplashBitmap::SplashBitmap function in SplashBitmap.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.10.6, as used in GPdf and kdegraphics KPDF, allows remote attackers to...

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-1187

Medium priority

Some fixes available 5 of 19

Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to CairoOutputDev (CairoOutputDev.cc).

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups
cupsys
evince
gpdf
ipe
kdegraphics
koffice
libextractor
pdfkit.framework
pdftohtml
poppler
tetex-bin
texlive-bin
xpdf
Show all 14 packages Show less packages

CVE-2009-1183

Medium priority

Some fixes available 34 of 76

The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted PDF file.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-1182

Medium priority

Some fixes available 34 of 76

Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allow remote attackers to execute arbitrary code via a crafted PDF file.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-1181

Medium priority

Some fixes available 35 of 78

The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a NULL pointer dereference.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-1180

Medium priority

Some fixes available 35 of 78

The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to execute arbitrary code via a crafted PDF file that triggers a free of invalid data.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-1179

Medium priority

Some fixes available 35 of 78

Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to execute arbitrary code via a crafted PDF file.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages

CVE-2009-0800

Medium priority

Some fixes available 35 of 78

Multiple "input validation flaws" in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allow remote attackers to execute arbitrary code via a crafted PDF file.

14 affected packages

cups, cupsys, evince, gpdf, ipe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
cups Not affected Not affected Not affected Not affected
cupsys Not in release Not in release Not in release Not in release
evince Not affected Not affected Not affected Not affected
gpdf Not in release Not in release Not in release Not in release
ipe Not affected Not affected Not affected Not affected
kdegraphics Not in release Not in release Not in release Not in release
koffice Not in release Not in release Not in release Not in release
libextractor Not affected Not affected Not affected Not affected
pdfkit.framework Not in release Not in release Not in release Not in release
pdftohtml Not in release Not in release Not in release Not in release
poppler Fixed Fixed Fixed Fixed
tetex-bin Not in release Not in release Not in release Not in release
texlive-bin Not affected Not affected Not affected Not affected
xpdf Not affected Not in release Not affected Not affected
Show all 14 packages Show less packages