CVE-2009-1179

Priority
Description
Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS
1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote
attackers to execute arbitrary code via a crafted PDF file.
Notes
 jdstrand> CUPS on Ubuntu uses system pdftops (compiled with --disable-pdftops)
 sbeattie> ipe uses system pdflatex
Assigned-to
mdeslaur
Package
Source: cups (LP Ubuntu Debian)
Priority: Negligible
Upstream:released (1.3.10)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected)
Trusty/esm:DNE (trusty was not-affected)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected
Ubuntu 18.04 LTS (Bionic Beaver):not-affected
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected
Ubuntu 19.04 (Disco Dingo):not-affected
Ubuntu 19.10 (Eoan):not-affected
Package
Priority: Negligible
Upstream:released (1.3.10)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Upstream:not-affected (linked to poppler)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected [linked to poppler])
Trusty/esm:DNE (trusty was not-affected [linked to poppler])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (linked to poppler)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (linked to poppler)
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected (linked to poppler)
Ubuntu 19.04 (Disco Dingo):not-affected (linked to poppler)
Ubuntu 19.10 (Eoan):not-affected (linked to poppler)
Package
Source: gpdf (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Source: ipe (LP Ubuntu Debian)
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected [uses system pdflatex])
Trusty/esm:DNE (trusty was not-affected [uses system pdflatex])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (uses system pdflatex)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (uses system pdflatex)
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected (uses system pdflatex)
Ubuntu 19.04 (Disco Dingo):not-affected (uses system pdflatex)
Ubuntu 19.10 (Eoan):not-affected (uses system pdflatex)
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Priority: Low
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was needs-triage)
Trusty/esm:DNE (trusty was needs-triage)
Ubuntu 16.04 LTS (Xenial Xerus):needs-triage
Ubuntu 18.04 LTS (Bionic Beaver):needs-triage
Ubuntu 18.10 (Cosmic Cuttlefish):needs-triage
Ubuntu 19.04 (Disco Dingo):needs-triage
Ubuntu 19.10 (Eoan):needs-triage
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was released [0.10.5-1ubuntu2])
Trusty/esm:DNE (trusty was released [0.10.5-1ubuntu2])
Ubuntu 16.04 LTS (Xenial Xerus):released (0.10.5-1ubuntu2)
Ubuntu 18.04 LTS (Bionic Beaver):released (0.10.5-1ubuntu2)
Ubuntu 18.10 (Cosmic Cuttlefish):released (0.10.5-1ubuntu2)
Ubuntu 19.04 (Disco Dingo):released (0.10.5-1ubuntu2)
Ubuntu 19.10 (Eoan):released (0.10.5-1ubuntu2)
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Trusty/esm:DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 18.10 (Cosmic Cuttlefish):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected [linked to poppler])
Trusty/esm:DNE (trusty was not-affected [linked to poppler])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (linked to poppler)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (linked to poppler)
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected (linked to poppler)
Ubuntu 19.04 (Disco Dingo):not-affected (linked to poppler)
Ubuntu 19.10 (Eoan):not-affected (linked to poppler)
Package
Source: xpdf (LP Ubuntu Debian)
Upstream:released (3.02-2)
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was not-affected [3.02-2])
Trusty/esm:DNE (trusty was not-affected [3.02-2])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (3.02-2)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (3.02-2)
Ubuntu 18.10 (Cosmic Cuttlefish):not-affected (3.02-2)
Ubuntu 19.04 (Disco Dingo):not-affected (3.02-2)
Ubuntu 19.10 (Eoan):not-affected (3.02-2)
More Information

Updated: 2019-04-26 14:14:20 UTC (commit 30899e40836d26e1bb5f0b072d31fd87b6cf3bd4)