Vulnerability Name: | CVE-2006-0746 (CCN-25146) | ||||||||||||||||
Assigned: | 2006-01-03 | ||||||||||||||||
Published: | 2006-01-03 | ||||||||||||||||
Updated: | 2018-10-19 | ||||||||||||||||
Summary: | Certain patches for kpdf do not include all relevant patches from xpdf that were associated with CVE-2005-3627, which allows context-dependent attackers to exploit vulnerabilities that were present in CVE-2005-3627. | ||||||||||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2006-0746 Source: CCN Type: BugTraq Mailing List, 2006-03-10 14:12:12 kpdf of KDE 3.3.x heap based buffer overflow Source: CCN Type: RHSA-2006-0262 kdegraphics security update Source: SECUNIA Type: Vendor Advisory 19189 Source: SECUNIA Type: Vendor Advisory 19190 Source: SECUNIA Type: Vendor Advisory 19264 Source: SREASON Type: UNKNOWN 566 Source: CCN Type: SECTRACK ID: 1015751 KDE kpdf/xpdf Incorrect Patch for Buffer Overflow Lets Remote Users Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1015751 Source: CCN Type: ASA-2006-063 kdegraphics security update (RHSA-2006-0262) Source: DEBIAN Type: UNKNOWN DSA-1008 Source: DEBIAN Type: DSA-1008 kdegraphics -- buffer overflow Source: CONFIRM Type: UNKNOWN http://www.kde.org/info/security/advisory-20060202-1.txt Source: CCN Type: KDE Security Advisory 20060310-1 kpdf/xpdf heap based buffer overflow Source: MANDRIVA Type: UNKNOWN MDKSA-2006:054 Source: REDHAT Type: UNKNOWN RHSA-2006:0262 Source: BUGTRAQ Type: UNKNOWN 20060310 [KDE Security Advisory] kpdf of KDE 3.3.x heap based buffer overflow Source: BID Type: UNKNOWN 17039 Source: CCN Type: BID-17039 Retired - KPDF Multiple Unspecified Vulnerabilities Source: XF Type: UNKNOWN kde-kpdf-patch-bo(25146) Source: XF Type: UNKNOWN kde-kpdf-patch-bo(25146) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:11441 | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |