ubuntu · CVE-2005-3628

Quick triage

Priority: medium Published: 2005-12-31 05:00:00 UTC Updated: 2025-07-17 16:37:00 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2005-3628 medium priority: Ubuntu including 3 source packages (gpdf, kdegraphics, koffice), 12 status rows across 4 suites (dapper, edgy, feisty, upstream): released 8, needs-triage 3, DNE 1.

Description:

Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via unknown attack vectors.

cvelogic Threat Intelligence