VYPR

by Xpdf

CVEs (43)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2002-13840.000.00Jan 2, 2003Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.
CVE-2000-07270.000.01Oct 20, 2000xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.
CVE-2000-07280.000.00Oct 20, 2000xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.

Page 3 of 3