CVE-2005-3624

Source
https://nvd.nist.gov/vuln/detail/CVE-2005-3624
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2005-3624.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2005-3624
Downstream
Related
Published
2005-12-31T05:00:00Z
Modified
2025-08-09T20:01:28Z
Summary
[none]
Details

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.

References

Affected packages