Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2010-3704

The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PDF file with a crafted PostScript Type1 font that contains a negative array index, which bypasses input validation and triggers memory corruption.

  • Published: Nov 5, 2010
  • Updated: Apr 13, 2023
  • CVE: CVE-2010-3704
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
poppler / poppler 0.13.3 0.13.3.x
poppler / poppler 0.13.1 0.13.1.x
poppler / poppler 0.10.3 0.10.3.x
poppler / poppler 0.9.3 0.9.3.x
poppler / poppler 0.10.1 0.10.1.x
poppler / poppler 0.10.0 0.10.0.x
poppler / poppler 0.10.7 0.10.7.x
poppler / poppler 0.12.2 0.12.2.x
poppler / poppler 0.14.2 0.14.2.x
poppler / poppler 0.13.2 0.13.2.x
poppler / poppler 0.11.3 0.11.3.x
poppler / poppler 0.10.6 0.10.6.x
poppler / poppler 0.12.3 0.12.3.x
poppler / poppler 0.13.4 0.13.4.x
poppler / poppler 0.10.4 0.10.4.x
poppler / poppler 0.9.2 0.9.2.x
poppler / poppler 0.11.2 0.11.2.x
poppler / poppler 0.12.0 0.12.0.x
poppler / poppler 0.14.1 0.14.1.x
poppler / poppler 0.14.4 0.14.4.x
poppler / poppler 0.9.0 0.9.0.x
poppler / poppler 0.15.1 0.15.1.x
poppler / poppler 0.14.5 0.14.5.x
poppler / poppler 0.8.7 0.8.7.x
poppler / poppler 0.9.1 0.9.1.x
poppler / poppler 0.12.1 0.12.1.x
poppler / poppler 0.11.0 0.11.0.x
poppler / poppler 0.13.0 0.13.0.x
poppler / poppler 0.14.3 0.14.3.x
poppler / poppler 0.10.2 0.10.2.x
poppler / poppler 0.14.0 0.14.0.x
poppler / poppler 0.15.0 0.15.0.x
poppler / poppler 0.11.1 0.11.1.x
poppler / poppler 0.10.5 0.10.5.x
poppler / poppler 0.12.4 0.12.4.x
foolabs / xpdf 0.91c 0.91c.x
foolabs / xpdf 0.91b 0.91b.x
foolabs / xpdf 0.93b 0.93b.x
foolabs / xpdf 1.00a 1.00a.x
foolabs / xpdf 0.91a 0.91a.x
foolabs / xpdf 3.02pl3 3.02pl3.x
foolabs / xpdf 0.92e 0.92e.x
foolabs / xpdf 0.5a 0.5a.x
foolabs / xpdf 0.92b 0.92b.x
foolabs / xpdf 0.93c 0.93c.x
foolabs / xpdf 0.92c 0.92c.x
foolabs / xpdf 3.02pl1 3.02pl1.x
foolabs / xpdf 0.7a 0.7a.x
foolabs / xpdf 0.93a 0.93a.x
foolabs / xpdf 3.0.1 3.0.1.x
foolabs / xpdf 3.02pl2 3.02pl2.x
kde / kdegraphics - -
foolabs / xpdf 0.92d 0.92d.x
foolabs / xpdf 0.92a 0.92a.x
glyphandcog / xpdfreader 0.2 0.2.x
glyphandcog / xpdfreader 0.3 0.3.x
glyphandcog / xpdfreader 0.4 0.4.x
glyphandcog / xpdfreader 0.5 0.5.x
glyphandcog / xpdfreader 0.6 0.6.x
glyphandcog / xpdfreader 0.80 0.80.x
glyphandcog / xpdfreader 0.90 0.90.x
glyphandcog / xpdfreader 1.00 1.00.x
glyphandcog / xpdfreader 1.01 1.01.x
glyphandcog / xpdfreader 2.00 2.00.x
glyphandcog / xpdfreader 2.01 2.01.x
glyphandcog / xpdfreader 2.03 2.03.x
glyphandcog / xpdfreader 3.00 3.00.x
glyphandcog / xpdfreader 3.01 3.01.x
glyphandcog / xpdfreader 0.7 0.7.x
glyphandcog / xpdfreader 0.91 0.91.x
glyphandcog / xpdfreader 0.92 0.92.x
glyphandcog / xpdfreader 0.93 0.93.x
glyphandcog / xpdfreader 2.02 2.02.x
glyphandcog / xpdfreader - 3.02.x
glyphandcog / xpdfreader 3.02 3.02.x