CVE-2004-0888: Integer Overflow
Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by CVE-2004-0889.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0888?
CVE-2004-0888 is considered critical as it can lead to denial of service and potential arbitrary code execution.
How do I fix CVE-2004-0888?
To fix CVE-2004-0888, upgrade to the patched versions of affected packages such as cups, gpdf, and kdegraphics.
Which software is affected by CVE-2004-0888?
CVE-2004-0888 affects xpdf, cups, gpdf, and kdegraphics among other packages utilizing xpdf code.
What type of vulnerability is CVE-2004-0888?
CVE-2004-0888 involves multiple integer overflows in certain PDF processing software.
Is remote exploitation possible with CVE-2004-0888?
Yes, CVE-2004-0888 allows remote attackers to exploit the vulnerability to crash the application.