CVE-2007-3387

Table of Contents

Impact:
Important
Public Date:
2007-07-28
CWE:
CWE-190
Bugzilla:
248194: CVE-2007-3387 xpdf integer overflow

The MITRE CVE dictionary describes this issue as:

Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.

Find out more about CVE-2007-3387 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 2.1 (xpdf) RHSA-2007:0735 2007-07-30
Red Hat Enterprise Linux 3 (cups) RHSA-2007:0720 2007-07-30
Red Hat Enterprise Linux 3 (xpdf) RHSA-2007:0735 2007-07-30
Red Hat Enterprise Linux 3 (tetex) RHSA-2007:0731 2007-08-01
Red Hat Enterprise Linux 5 (kdegraphics) RHSA-2007:0729 2007-07-30
Red Hat Enterprise Linux 4 (kdegraphics) RHSA-2007:0729 2007-07-30
Red Hat Enterprise Linux 4 (cups) RHSA-2007:0720 2007-07-30
Red Hat Enterprise Linux 4 (tetex) RHSA-2007:0731 2007-08-01
Red Hat Enterprise Linux 4 (gpdf) RHSA-2007:0730 2007-07-30
Red Hat Enterprise Linux 4 (xpdf) RHSA-2007:0735 2007-07-30
Red Hat Enterprise Linux Optional Productivity Applications (v. 5 server) (kdegraphics) RHSA-2007:0729 2007-07-30
Red Hat Enterprise Linux 5 (cups) RHSA-2007:0720 2007-07-30
Red Hat Enterprise Linux 5 (tetex) RHSA-2007:0731 2007-08-01
Red Hat Enterprise Linux 5 (poppler) RHSA-2007:0732 2007-07-30
Red Hat Enterprise Linux 2.1 (tetex) RHSA-2007:0731 2007-08-01
Last Modified

CVE description copyright © 2017, The MITRE Corporation