Oval Definition:
oval:com.ubuntu.artful:def:20090166000
Revision Date
:
2009-04-23
Version
:
1
Title
:
CVE-2009-0166 on Ubuntu 17.10 (artful) - medium.
Description
:
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a free of uninitialized memory.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2009-0166
Platform(s)
:
Ubuntu 17.10
Product(s)
:
Definition Synopsis
Ubuntu 17.10 (artful) is installed.
AND
Package Information
NOT
While related to the CVE in some way, the 'cups' package in artful is not affected.
OR
NOT
While related to the CVE in some way, the 'evince' package in artful is not affected (note: 'linked to poppler').
OR
NOT
While related to the CVE in some way, the 'ipe' package in artful is not affected (note: 'uses system pdflatex').
OR
The vulnerability of the 'libextractor' package in artful is not known (status: 'needs-triage'). It is pending evaluation.
OR
The 'poppler' package in artful was vulnerable but has been fixed (note: '0.10.5-1ubuntu2').
OR
NOT
While related to the CVE in some way, the 'texlive-bin' package in artful is not affected (note: 'linked to poppler').
OR
NOT
While related to the CVE in some way, the 'xpdf' package in artful is not affected (note: '3.02-2').
BACK