~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
PublicDateAtUSN: 2009-04-23
Candidate:CVE-2009-1187
PublicDate: 2009-04-23
References: 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1187
 http://www.ubuntu.com/usn/usn-759-1
Description:
 Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6
 allows remote attackers to cause a denial of service (crash) and possibly
 execute arbitrary code via vectors related to CairoOutputDev
 (CairoOutputDev.cc).
Ubuntu-Description:
Notes: 
 jdstrand> CUPS on Ubuntu uses system pdftops (compiled with --disable-pdftops)
Bugs: 
Priority: medium
Discovered-by:
Assigned-to: mdeslaur

Patches_xpdf:
upstream_xpdf: needs-triage
dapper_xpdf: ignored (reached end-of-life)
gutsy_xpdf: needs-triage (reached end-of-life)
hardy_xpdf: ignored (reached end-of-life)
intrepid_xpdf: not-affected
jaunty_xpdf: not-affected
karmic_xpdf: not-affected
devel_xpdf: not-affected

Patches_koffice:
Priority_koffice: low
upstream_koffice: needs-triage
dapper_koffice: ignored (reached end-of-life)
gutsy_koffice: needs-triage (reached end-of-life)
hardy_koffice: not-affected
intrepid_koffice: not-affected
jaunty_koffice: not-affected
karmic_koffice: not-affected (linked to poppler)
devel_koffice: not-affected (code not present)

Patches_evince:
upstream_evince: not-affected (linked to poppler)
dapper_evince: not-affected (linked to poppler)
gutsy_evince: not-affected (linked to poppler)
hardy_evince: not-affected (linked to poppler)
intrepid_evince: not-affected (linked to poppler)
jaunty_evince: not-affected (linked to poppler)
karmic_evince: not-affected (linked to poppler)
devel_evince: not-affected (linked to poppler)

Patches_poppler:
upstream_poppler: needs-triage
dapper_poppler: released (0.5.1-0ubuntu7.5)
gutsy_poppler: needs-triage (reached end-of-life)
hardy_poppler: released (0.6.4-1ubuntu3.2)
intrepid_poppler: released (0.8.7-1ubuntu0.2)
jaunty_poppler: released (0.10.5-1ubuntu2)
karmic_poppler: released (0.10.5-1ubuntu2)
devel_poppler: released (0.10.5-1ubuntu2)

Patches_tetex-bin:
upstream_tetex-bin: needs-triage
dapper_tetex-bin: not-affected (linked to poppler)
gutsy_tetex-bin: DNE
hardy_tetex-bin: DNE
intrepid_tetex-bin: DNE
jaunty_tetex-bin: DNE
karmic_tetex-bin: DNE
devel_tetex-bin: DNE

Patches_texlive-bin:
upstream_texlive-bin: needs-triage
dapper_texlive-bin: DNE
gutsy_texlive-bin: not-affected (linked to poppler)
hardy_texlive-bin: not-affected (linked to poppler)
intrepid_texlive-bin: not-affected (linked to poppler)
jaunty_texlive-bin: not-affected (linked to poppler)
karmic_texlive-bin: not-affected (linked to poppler)
devel_texlive-bin: not-affected (linked to poppler)

Patches_kdegraphics:
upstream_kdegraphics: needs-triage
dapper_kdegraphics: not-affected (linked to poppler)
gutsy_kdegraphics: not-affected (linked to poppler)
hardy_kdegraphics: not-affected (linked to poppler)
intrepid_kdegraphics: not-affected (linked to poppler)
jaunty_kdegraphics: not-affected (linked to poppler)
karmic_kdegraphics: not-affected (linked to poppler)
devel_kdegraphics: not-affected (linked to poppler)

Patches_gpdf:
upstream_gpdf: needs-triage
dapper_gpdf: ignored (reached end-of-life)
gutsy_gpdf: DNE
hardy_gpdf: DNE
intrepid_gpdf: DNE
jaunty_gpdf: DNE
karmic_gpdf: DNE
devel_gpdf: DNE

Patches_pdftohtml:
upstream_pdftohtml: 
dapper_pdftohtml: ignored (reached end-of-life)
gutsy_pdftohtml: DNE
hardy_pdftohtml: DNE
intrepid_pdftohtml: DNE
jaunty_pdftohtml: DNE
karmic_pdftohtml: DNE
devel_pdftohtml: DNE

Patches_libextractor:
upstream_libextractor: 
dapper_libextractor: ignored (reached end-of-life)
gutsy_libextractor: needs-triage (reached end-of-life)
hardy_libextractor: not-affected
intrepid_libextractor: not-affected
jaunty_libextractor: not-affected
karmic_libextractor: not-affected
devel_libextractor: not-affected

Patches_pdfkit.framework:
upstream_pdfkit.framework: 
dapper_pdfkit.framework: ignored (reached end-of-life)
gutsy_pdfkit.framework: DNE
hardy_pdfkit.framework: DNE
intrepid_pdfkit.framework: DNE
jaunty_pdfkit.framework: DNE
karmic_pdfkit.framework: DNE
devel_pdfkit.framework: DNE

Patches_ipe:
upstream_ipe: needs-triage
dapper_ipe: ignored (reached end-of-life)
gutsy_ipe: needs-triage (reached end-of-life)
hardy_ipe: ignored (reached end-of-life)
intrepid_ipe: not-affected
jaunty_ipe: not-affected
karmic_ipe: not-affected
devel_ipe: not-affected

Patches_cups:
Priority_cups: negligible
upstream_cups: released (1.3.10)
dapper_cups: DNE
gutsy_cups: DNE
hardy_cups: DNE
intrepid_cups: not-affected
jaunty_cups: not-affected
karmic_cups: not-affected
devel_cups: not-affected

Patches_cupsys:
Priority_cupsys: negligible
upstream_cupsys: released (1.3.10)
dapper_cupsys: not-affected
gutsy_cupsys: not-affected
hardy_cupsys: not-affected
intrepid_cupsys: DNE
jaunty_cupsys: DNE
karmic_cupsys: DNE
devel_cupsys: DNE