Vulnerability Description
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Poppler | Poppler | 0.8.7 |
| Foolabs | Xpdf | 0.5a |
| Glyphandcog | Xpdfreader | <= 3.02 |
| Kde | Kdegraphics | All versions |
Related Weaknesses (CWE)
References
- ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.02pl5.patchPatch
- http://cgit.freedesktop.org/poppler/poppler/commit/?id=39d140bfc0b8239bdd96d6a55Patch
- http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050268.h
- http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050285.h
- http://lists.fedoraproject.org/pipermail/package-announce/2010-November/050390.h
- http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049392.ht
- http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049523.ht
- http://lists.fedoraproject.org/pipermail/package-announce/2010-October/049545.ht
- http://lists.opensuse.org/opensuse-security-announce/2010-11/msg00006.html
- http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html
- http://rhn.redhat.com/errata/RHSA-2012-1201.html
- http://secunia.com/advisories/42141
- http://secunia.com/advisories/42357
- http://secunia.com/advisories/42397
- http://secunia.com/advisories/42691
FAQ
What is CVE-2010-3704?
CVE-2010-3704 is a vulnerability with a CVSS score of 6.8 (MEDIUM). The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows con...
How severe is CVE-2010-3704?
CVE-2010-3704 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-3704?
Check the references section above for vendor advisories and patch information. Affected products include: Poppler Poppler, Foolabs Xpdf, Glyphandcog Xpdfreader, Kde Kdegraphics.