«
Expand/Collapse
520 items tagged "pdf"
Related tags:
service vulnerability [+],
security [+],
mandriva [+],
linux [+],
editor [+],
arabic [+],
txt [+],
proof of concept [+],
poc [+],
hijacking [+],
poppler [+],
heap corruption [+],
cybsec [+],
criando [+],
bugs microsoft [+],
service expert [+],
scanner [+],
perfect [+],
libraries [+],
forgery [+],
cms [+],
buffer overflow [+],
adobe [+],
moaub [+],
soda [+],
pdf reader [+],
overflow vulnerability [+],
nitro [+],
iphone [+],
heap [+],
firefox [+],
cross site scripting [+],
whitepaper [+],
tool [+],
stack overflow [+],
stack buffer [+],
shell [+],
security advisory [+],
python tool [+],
peepdf [+],
oracle pdf [+],
oracle [+],
metasploit [+],
memory [+],
inclusion [+],
file upload [+],
exploits [+],
dll [+],
buffer overflow vulnerability [+],
apple quicktime player [+],
apple quicktime [+],
adobe pdf [+],
achievo [+],
vulnerability [+],
wordpress [+],
wireless networks [+],
vulnerability research [+],
spidermonkey [+],
slides [+],
service scenario [+],
service [+],
server side applications [+],
read [+],
professional version [+],
print button [+],
print [+],
pdfill [+],
pdf products [+],
pdf file format [+],
pdf editor [+],
object streams [+],
null pointer [+],
msvc [+],
mpeg layer 3 [+],
microsoft mpeg [+],
meta [+],
master [+],
julia wolf tags [+],
html [+],
heap memory [+],
foxit [+],
forensics [+],
file [+],
exception handler [+],
directory traversal vulnerability [+],
denial of service exploit [+],
denial [+],
darknet [+],
cross [+],
crash [+],
convert [+],
clamav [+],
apple [+],
adobe acrobat reader [+],
accounting [+],
xss [+],
xpdf [+],
x extsetowner [+],
whisper [+],
visinia [+],
viral threats [+],
unicode [+],
trendmicro [+],
trend micro internet security [+],
time input [+],
tif [+],
sslstrip [+],
ssh sessions [+],
sql pdf [+],
sorax [+],
slide [+],
side [+],
security posture [+],
rop [+],
restriction [+],
realplayer [+],
real time [+],
rainbow [+],
proxys [+],
proxy scanner [+],
practical [+],
posix [+],
pdf specification [+],
pdf digital [+],
oriented programming [+],
omg wtf [+],
omg [+],
office of inspector general [+],
office [+],
nuance [+],
new [+],
msunicode [+],
msmpeg [+],
moviemaker [+],
movie maker [+],
microsoft excel [+],
micro internet [+],
metasploit framework [+],
malicious [+],
lotus domino [+],
lotus [+],
linux kernel versions [+],
kernel stack [+],
invalid pointer [+],
introduction [+],
inspector general [+],
information leakage [+],
information [+],
imap [+],
ifnuke [+],
hijack [+],
hiding [+],
fuzzing [+],
freesshd [+],
file processing [+],
europe [+],
eshtery [+],
eric filiol [+],
elliptic curve [+],
elliptic [+],
electronic magazine [+],
domino [+],
domain information [+],
digital [+],
dhs [+],
desenvolvendo [+],
dectando [+],
daemon [+],
curve cryptography [+],
crossdomain [+],
cpanel [+],
command execution [+],
cli [+],
chaos communication congress [+],
capabilities [+],
call [+],
buffer [+],
break [+],
brava [+],
blackhat [+],
black hat [+],
binarymodify [+],
beta [+],
authors [+],
authentication [+],
aug [+],
aspnuke [+],
aqt [+],
anomalous curves [+],
advanced [+],
adobe pdf reader [+],
adobe acrobat [+],
Bugs [+],
uninitialized pointer [+],
pdf parser [+],
zero day [+],
zenphoto [+],
zen [+],
x coregraphics [+],
word v7 [+],
wolf [+],
wireshark [+],
wireplay [+],
web applications [+],
visualsite [+],
viral [+],
video [+],
verypdf [+],
vector [+],
user [+],
time [+],
tiff [+],
temporary file [+],
swissarmy [+],
swiss army knife [+],
stream [+],
starvation [+],
spate [+],
shockwave director [+],
shockwave [+],
server versions [+],
sensor networks [+],
seh all at once attack [+],
security hole [+],
salted [+],
s 700 [+],
rmd [+],
reverse engineer [+],
retired [+],
repro [+],
remote shell [+],
remote buffer overflow vulnerability [+],
remote buffer overflow [+],
remote [+],
record stack [+],
raynal [+],
presentation slides [+],
presentation [+],
pilot [+],
photo image gallery [+],
penetration [+],
pdf2tif [+],
pdf password cracker [+],
pdf files [+],
pdf distiller [+],
password [+],
paper [+],
omg wtf pdf [+],
null pointer dereference [+],
novell netware [+],
novell iprint [+],
novell [+],
nickel and dime [+],
nicb [+],
networks [+],
necessary components [+],
mupdf [+],
msword [+],
msmpegdbz [+],
msiemshtml [+],
mshtml [+],
msexcelobj [+],
mozff [+],
microsoft office word [+],
microsoft [+],
microcontrollers [+],
metasploit review [+],
mask [+],
malware [+],
malaysia [+],
macos systems [+],
mac malware [+],
luftguitar [+],
lockout [+],
jit [+],
javacmm [+],
iscan [+],
ipv [+],
ipswitch [+],
ipad [+],
introducao [+],
internet protocol version 6 [+],
internet protocol version [+],
internet explorer [+],
interface [+],
intelligent [+],
insecurity [+],
injector [+],
information disclosure [+],
iis [+],
ieee [+],
hpopenview [+],
hidden [+],
haunted [+],
hashes [+],
handling [+],
hack in the box [+],
google [+],
ghostscript [+],
full review [+],
ftp scanner [+],
fragmentation [+],
fpp [+],
files [+],
extract [+],
exploring [+],
excelrtd [+],
dtrace [+],
don [+],
discovered [+],
directory traversal [+],
dhcp [+],
denial of service attacks [+],
default [+],
debugging [+],
debian [+],
day [+],
critical [+],
creator [+],
creation vulnerability [+],
creating [+],
cmsimple [+],
cmm [+],
closedctd [+],
cinepak [+],
chunk [+],
chrome [+],
chm [+],
brief [+],
blackberry [+],
binary [+],
beaglebone [+],
banish [+],
backupexec [+],
automated system [+],
audio decoder [+],
audio [+],
attacker [+],
arm processor [+],
arbitrary code [+],
aradblog [+],
apple preview [+],
apple macos [+],
apple mac os [+],
alpha 3 [+],
alpha [+],
aarflash [+],
Software [+],
Countermeasures [+],
code execution [+],
expert [+],
denial of service [+],
reader [+],
memory corruption [+],
sql injection [+],
portuguese [+],
month [+],
mandriva linux [+],
parser [+],
zine issue,
zeus botnet,
zeus,
zend,
xor,
x exploits,
writing,
wpm,
win32,
win,
web security,
web administration,
vulnerability exploitation,
vulnerabilities,
vlans,
virtual lan,
virtual,
viper,
version,
vectors,
upload,
unspecified,
udp,
tutorial pdf,
tutorial basico,
tutorial,
trend,
tree,
transparency,
thomas werth,
tgz,
terminations,
tenable network security,
tenable,
tcpdump,
tcp ip,
tar gz,
tar,
system,
synflood,
sumatra pdf,
sumatra,
sulley,
substr,
stream length,
stack,
sqli,
sqlcommandexec,
sql,
spiderpig,
spanning tree,
spanning,
spanish version,
sonda,
social engeneering,
slew,
site url,
signatures,
shoutbox,
shortest path,
service qos,
security provider,
security notice,
scripting,
sata,
sap,
root,
rfi,
reverse engineering,
rev,
report pdf,
reflectedxss,
reader v2,
r software,
quotes,
quot quot,
quot,
quick reference,
query function,
quality of service,
quality,
qos,
python,
protecting,
privileges in oracle,
privilege escalation vulnerability,
privilege,
prisonbreak,
prison break,
primitives,
previous versions,
prevention,
ppp,
postscript pdf,
postscript,
point,
pl sql,
pirate bay,
physical,
phreebooks,
php versions,
php rfi saldiriengelleme,
php applications,
php,
phishing,
perspective,
persian,
permanentxss,
pdf tutorial,
pdf reader software,
patches,
part,
paper pdf,
p network,
overflow error,
overflow,
osticket,
ossim,
ospf,
orkut,
oracle 11g,
open,
opcode,
omegle,
nmap,
network users,
network address translation,
network,
nbsp nbsp nbsp nbsp nbsp,
nbsp,
nat,
mysql,
myit,
msf,
mops,
mime decode,
microsoft windows,
micro data,
micro,
metasplizing,
message digest,
memory usage,
memory management,
memory access,
magic,
magazine volume,
logic,
local privilege escalation,
local area network,
linux security,
linux i386,
lingers,
li guillaume lovet,
lfi,
left,
lan,
kryptographie,
krb5,
killed,
jumps,
jugando,
jit spray shellcode,
jeremy brown,
javascrpt,
jailbreak,
issue 1,
issue,
ipod touch,
ios,
interscan,
interruption,
internet,
information leak,
information disclosure vulnerability,
improve,
implantable medical devices,
impact,
hzv ezine,
hunting,
htz,
htmlspecialchars,
htmlentities,
hping,
how to,
honeytrap,
honey trap,
hole,
hitb ezine issue,
hitb,
hipergate,
heap management,
hash collision,
hash,
haihaisoft,
hackingaurora,
hackerzvoice,
hackers,
hack,
guide,
guardian project,
functionality,
function,
flash plugin,
flash,
flag,
fix,
finding,
file format,
ezine issue,
ezine,
exploitingplsqlinoracle,
exploit,
explin,
exhaustion,
execution,
exec,
escalation,
epidemic,
email,
egg hunting,
egg hunt,
egg,
editeur,
ed2k,
easy,
e107,
e zine,
dsa,
document changes,
document,
dnsbotnet,
dictionary files,
dictionary file,
design flaw,
design,
descriptive guide,
depbypass,
debian linux,
ddos attacks,
ddos,
david kennedy,
data loss prevention,
data leakage,
d.r. software,
d clodprogressivemeshdeclaration,
cybsec freepbxsql,
cyberwar,
cvp hackersperspective,
custom memory,
cups,
cross application,
crlf,
critical vulnerability,
corp,
control v1,
comparison,
common ports,
common,
command line options,
collisions,
code software,
cisco voip,
cisco,
cheatsheet esp v,
cheatsheet eng v,
cheatsheet,
casestudy,
can of worms,
call time,
cacti,
bytecode,
businessobj,
building,
bugtraq,
buffer overflow vulnerabilities,
botnet,
bot,
bonsai,
based buffer overflow,
automation,
aurora,
audio converter,
attacking,
asm,
apple releases,
apple ios,
analysis,
analizi,
adobe reader,
address,
active x,
access pdf,
Skype,
Pentesting,
ExploitsVulnerabilities
-
-
21:36
»
SecDocs
Authors:
Julia Wolf Tags:
PDF Event:
Chaos Communication Congress 27th (27C3) 2010 Abstract: Ambiguities in the PDF specification means that no two PDF parsers will see a file in the same way. This leads to many opportunities for exploit obfuscation. PDFs are currently the greatest vector for drive-by (malware installing) attacks and targeted attacks on business and government. A/V technology is extraordinarily poor at detecting these. The PDF format itself is so diverse and vague, that an A/V would need to be 100% bug-compatible with the parser in the vulnerable PDF reader. You can also do cool tricks like make a single PDF file that displays completely differently in several different readers.
-
21:36
»
SecDocs
Authors:
Julia Wolf Tags:
PDF Event:
Chaos Communication Congress 27th (27C3) 2010 Abstract: Ambiguities in the PDF specification means that no two PDF parsers will see a file in the same way. This leads to many opportunities for exploit obfuscation. PDFs are currently the greatest vector for drive-by (malware installing) attacks and targeted attacks on business and government. A/V technology is extraordinarily poor at detecting these. The PDF format itself is so diverse and vague, that an A/V would need to be 100% bug-compatible with the parser in the vulnerable PDF reader. You can also do cool tricks like make a single PDF file that displays completely differently in several different readers.
-
-
14:30
»
Hack a Day
The biggest benefit to using the BeagleBone is it’s 700 MHz ARM processor. If you’re just messing around with basic I/O that power is going unused, but [Nuno Alves] is taking advantage of its power. He built a PDF password cracker based on the $85 development board. We recently saw how easy it is to [...]
-
8:13
»
Packet Storm Security Exploits
Soda PDF Professional version 1.2.155 suffers from a restriction of service (RoS) vulnerability when handling PDF or WWF file formats which can be exploited by malicious people to cause a denial of service scenario.
-
8:13
»
Packet Storm Security Recent Files
Soda PDF Professional version 1.2.155 suffers from a restriction of service (RoS) vulnerability when handling PDF or WWF file formats which can be exploited by malicious people to cause a denial of service scenario.
-
8:13
»
Packet Storm Security Misc. Files
Soda PDF Professional version 1.2.155 suffers from a restriction of service (RoS) vulnerability when handling PDF or WWF file formats which can be exploited by malicious people to cause a denial of service scenario.
-
-
13:58
»
Packet Storm Security Exploits
Google Chrome versions prior to 14.0.835.163 suffer from a PDF file handling memory corruption vulnerability. Full advisory and proof of concept pdf and code included.
-
-
17:50
»
Packet Storm Security Recent Files
peepdf is a Python tool to explore PDF files in order to find out if the file can be harmful or not. The aim of this tool is to provide all the necessary components that a security researcher could need in a PDF analysis without using 3 or 4 tools to make all the tasks. With peepdf it's possible to see all the objects in the document showing the suspicious elements, supports all the most used filters and encodings, it can parse different versions of a file, object streams and encrypted files. With the installation of Spidermonkey and Libemu it provides Javascript and shellcode analysis wrappers too. It's also able to create new PDF files and to modify existent ones.
-
17:50
»
Packet Storm Security Tools
peepdf is a Python tool to explore PDF files in order to find out if the file can be harmful or not. The aim of this tool is to provide all the necessary components that a security researcher could need in a PDF analysis without using 3 or 4 tools to make all the tasks. With peepdf it's possible to see all the objects in the document showing the suspicious elements, supports all the most used filters and encodings, it can parse different versions of a file, object streams and encrypted files. With the installation of Spidermonkey and Libemu it provides Javascript and shellcode analysis wrappers too. It's also able to create new PDF files and to modify existent ones.
-
17:50
»
Packet Storm Security Misc. Files
peepdf is a Python tool to explore PDF files in order to find out if the file can be harmful or not. The aim of this tool is to provide all the necessary components that a security researcher could need in a PDF analysis without using 3 or 4 tools to make all the tasks. With peepdf it's possible to see all the objects in the document showing the suspicious elements, supports all the most used filters and encodings, it can parse different versions of a file, object streams and encrypted files. With the installation of Spidermonkey and Libemu it provides Javascript and shellcode analysis wrappers too. It's also able to create new PDF files and to modify existent ones.
-
7:17
»
Packet Storm Security Advisories
nSense Vulnerability Research Security Advisory - A PDF file format parsing vulnerability exists in the pdf2tif parser and can be exploited with a specially crafted input file. The plugin suffers from a buffer overflow flaw. Many server side applications use the library when converting pdf files to images. If an attacker is able to send the application a malicious file, successful exploitation leads to code being executed in the context of the running application.
-
7:17
»
Packet Storm Security Recent Files
nSense Vulnerability Research Security Advisory - A PDF file format parsing vulnerability exists in the pdf2tif parser and can be exploited with a specially crafted input file. The plugin suffers from a buffer overflow flaw. Many server side applications use the library when converting pdf files to images. If an attacker is able to send the application a malicious file, successful exploitation leads to code being executed in the context of the running application.
-
7:17
»
Packet Storm Security Misc. Files
nSense Vulnerability Research Security Advisory - A PDF file format parsing vulnerability exists in the pdf2tif parser and can be exploited with a specially crafted input file. The plugin suffers from a buffer overflow flaw. Many server side applications use the library when converting pdf files to images. If an attacker is able to send the application a malicious file, successful exploitation leads to code being executed in the context of the running application.
-
-
17:07
»
Packet Storm Security Exploits
This Metasploit module exploits a stack buffer overflow in Foxit PDF Reader prior to version 4.2.0.0928. The vulnerability is triggered when opening a malformed PDF file that contains an overly long string in the Title field. This results in overwriting a structured exception handler record. NOTE: This exploit does not use javascript.
-
17:07
»
Packet Storm Security Recent Files
This Metasploit module exploits a stack buffer overflow in Foxit PDF Reader prior to version 4.2.0.0928. The vulnerability is triggered when opening a malformed PDF file that contains an overly long string in the Title field. This results in overwriting a structured exception handler record. NOTE: This exploit does not use javascript.
-
17:07
»
Packet Storm Security Misc. Files
This Metasploit module exploits a stack buffer overflow in Foxit PDF Reader prior to version 4.2.0.0928. The vulnerability is triggered when opening a malformed PDF file that contains an overly long string in the Title field. This results in overwriting a structured exception handler record. NOTE: This exploit does not use javascript.
-
-
16:01
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-228 - The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
16:01
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-229 - The Gfx::getPos function in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
16:01
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-230 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
16:01
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-231 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via a PDF file that triggers an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
16:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-228 - The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
16:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-229 - The Gfx::getPos function in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
16:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-230 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
16:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-231 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via a PDF file that triggers an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:38
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-231 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via a PDF file that triggers an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:38
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-231 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via a PDF file that triggers an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:38
»
Packet Storm Security Misc. Files
Mandriva Linux Security Advisory 2010-231 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via a PDF file that triggers an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:37
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-230 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
14:37
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-230 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
14:37
»
Packet Storm Security Misc. Files
Mandriva Linux Security Advisory 2010-230 - The Gfx::getPos function in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in poppler, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
14:29
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-229 - The Gfx::getPos function in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:29
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-229 - The Gfx::getPos function in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:29
»
Packet Storm Security Misc. Files
Mandriva Linux Security Advisory 2010-229 - The Gfx::getPos function in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in kdegraphics, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption. The updated packages have been patched to correct these issues.
-
14:29
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-228 - The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
14:29
»
Packet Storm Security Recent Files
Mandriva Linux Security Advisory 2010-228 - The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
14:29
»
Packet Storm Security Misc. Files
Mandriva Linux Security Advisory 2010-228 - The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service via unknown vectors that trigger an uninitialized pointer dereference. The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a PDF file with a crafted Type1 font that contains a negative array index, which bypasses input validation and which triggers memory corruption.
-
-
22:02
»
Packet Storm Security Misc. Files
Whitepaper called Remote SQL Command Execution. Written in Italian.
-
18:02
»
Packet Storm Security Advisories
Ubuntu Security Notice 1005-1 - It was discovered that poppler contained multiple security issues when parsing malformed PDF documents. If a user or automated system were tricked into opening a crafted PDF file, an attacker could cause a denial of service or execute arbitrary code with privileges of the user invoking the program.
-
-
20:01
»
Packet Storm Security Misc. Files
Whitepaper called Exploiting Capabilities - Parcel Root Power, The Dark Side Of Capabilities. It dives into the dangers linked to POSIX file capabilities supported in Linux kernel versions greater than 2.6.26.
-
20:01
»
Packet Storm Security Misc. Files
These are slide from the Practical Padding Oracle Attack presentation given at BlackHat Europe 2010.
-
20:00
»
Packet Storm Security Exploits
CYBSEC Security Advisory - Achievo version 1.4.3 suffers from multiple authorization flaws. Proof of concept code included.
-
20:00
»
Packet Storm Security Exploits
CYBSEC Security Advisory - Achievo version 1.4.3 suffers from cross site request forgery vulnerabilities. Proof of concept code included.
-
19:00
»
Packet Storm Security Advisories
Month Of Abysssec Undisclosed Bugs - PHP MicroCMS versions 1.0.1 and below suffer from remote SQL injection and local file inclusion vulnerabilities.
-
19:00
»
Packet Storm Security Advisories
Month Of Abysssec Undisclosed Bugs - Ipswitch Imail server versions 11.01 and 11.02 suffer from a reply-to address memory corruption vulnerability.
-
17:00
»
Packet Storm Security Advisories
Month Of Abysssec Undisclosed Bugs - Visinia version 1.3 suffers from cross site request forgery and local file inclusion vulnerabilities.
-
17:00
»
Packet Storm Security Advisories
Month Of Abysssec Undisclosed Bugs - Trend Micro Internet Security Pro 2010 suffers from an Active-X extSetOwner remote code execution vulnerability.
-
-
22:02
»
Packet Storm Security Misc. Files
Month Of Abysssec Undisclosed Bugs - Rainbow Portal version 2.0 suffers from login weakness, cross site scripting and remote SQL injection vulnerabilities.
-
-
20:00
»
Packet Storm Security Advisories
Apple Preview.app is the default application used in Apple MacOS systems in order to visualize PDF files and does not properly parse PDF files, which leads to memory corruption when opening a malformed file with an invalid size on JBIG2 structure at offset 0x2C1 as in PoC Repro1.pdf or offset 0x2C5 as in PoC Repro2.pdf (both values trigger the same vulnerability).