CVE-2005-3625

Source
https://nvd.nist.gov/vuln/detail/CVE-2005-3625
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2005-3625.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2005-3625
Downstream
Published
2005-12-31T05:00:00Z
Modified
2025-08-09T20:01:27Z
Summary
[none]
Details

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."

References

Affected packages