debian · CVE-2005-3628

Quick triage

Priority: not yet assigned 公開: Updated: Thu, 23 Jul 2026 01:18:52 GMT

参照: Official debian advisory, NVD, CVE.org · CVE 詳細

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2005-3628 not yet assigned priority: Debian including 3 source packages (cups, libextractor, xpdf), 15 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 15.

Description:

Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via unknown attack vectors.

cvelogic Threat Intelligence