製品・ソフトウェアに関する情報
poppler の utils/pdfseparate.cc の extractPages 関数におけるスタックベースのバッファオーバーフローの脆弱性
Title poppler の utils/pdfseparate.cc の extractPages 関数におけるスタックベースのバッファオーバーフローの脆弱性
Summary

poppler の utils/pdfseparate.cc の extractPages 関数には、スタックベースのバッファオーバーフローの脆弱性が存在します。

Possible impacts 第三者により、ソースファイル名を介して、サービス運用妨害 (クラッシュ) 状態にされる、および任意のコードを実行される可能性があります。
Solution

ベンダより正式な対策が公開されています。ベンダ情報を参照して適切な対策を実施してください。

Publication Date Sept. 16, 2013, midnight
Registration Date Nov. 27, 2013, 11:20 a.m.
Last Update Nov. 27, 2013, 11:20 a.m.
CVSS2.0 : 危険
Score 7.5
Vector AV:N/AC:L/Au:N/C:P/I:P/A:P
Affected System
freedesktop.org
Poppler 0.24.3 未満
CVE (情報セキュリティ 共通脆弱性識別子)
CWE (共通脆弱性タイプ一覧)
ベンダー情報
Change Log
No Changed Details Date of change
0 [2013年11月27日]
  掲載
Feb. 17, 2018, 10:37 a.m.

NVD Vulnerability Information
CVE-2013-4473
Summary

Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a source filename.

Publication Date Nov. 23, 2013, 8:55 p.m.
Registration Date Jan. 26, 2021, 3:43 p.m.
Last Update Nov. 21, 2024, 10:55 a.m.
Affected software configurations
Configuration1 or higher or less more than less than
cpe:2.3:a:freedesktop:poppler:0.16.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.12.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.11.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.7:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.23.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.6.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.12.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.21.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.6:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.18.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.6:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.13.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.22.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.9:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.11.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.24.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.17.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.13.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.17.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.3.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.13.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.17.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.3.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.12.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.11.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.18.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.19.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.19.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.15.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.15.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.11.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.21.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.2.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.6.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:*:*:*:*:*:*:*:* 0.24.1
cpe:2.3:a:freedesktop:poppler:0.19.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.13.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.12.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.7:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.9.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.7.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.23.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.22.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.17.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.90:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.18.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.19.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.7.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.21.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.6.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.21.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.23.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.23.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.18.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.22.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.6.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.14.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.19.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.22.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.16.6:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.17.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.12.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.22.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.20.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.23.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.21.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.15.0:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.91:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.8.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.13.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.5.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.4.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.18.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.10.7:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.15.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:poppler:0.6.3:*:*:*:*:*:*:*
Configuration2 or higher or less more than less than
cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
Related information, measures and tools
Common Vulnerabilities List