CVE-2008-1693

Source
https://nvd.nist.gov/vuln/detail/CVE-2008-1693
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2008-1693.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2008-1693
Downstream
Related
Published
2008-04-18T15:05:00Z
Modified
2025-08-09T20:01:26Z
Summary
[none]
Details

The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFview, KWord, and other applications, does not properly handle embedded fonts in PDF files, which allows remote attackers to execute arbitrary code via a crafted font object, related to dereferencing a function pointer associated with the type of this font object.

References

Affected packages