CVE-2004-0889: Integer Overflow
Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by CVE-2004-0888.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0889?
CVE-2004-0889 is classified as a high severity vulnerability due to its potential to allow denial of service and arbitrary code execution.
How do I fix CVE-2004-0889?
To fix CVE-2004-0889, update xpdf to versions later than 3.0, or update the affected KDE and KOffice packages to the specified remedies.
Which software is affected by CVE-2004-0889?
CVE-2004-0889 affects xpdf 3.0 and other software packages including various versions of KDE graphics and KOffice.
What type of vulnerability is CVE-2004-0889?
CVE-2004-0889 involves multiple integer overflows leading to potential denial of service and execution of arbitrary code.
Is there a known exploit for CVE-2004-0889?
While no specific exploits are publicly available, the vulnerability can be exploited remotely under certain conditions.