CVE-2009-1180: Medium severity xpdf vulnerability
An invalid free() flaw was found in xpdf's JBIG2 decoder. If a malicious PDF file could free() attacker controlled data, it may be possible to execute arbitrary code with the permissions of the user running xpdf.
Will Dormann of the CERT/CC created the extensive testsuite for the JBIG2 decoder in various PDF libraries that found this flaw.
Acknowledgements:
Red Hat would like to thank Will Dormann of the CERT/CC for responsibly reporting this flaw.
Other sources
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to execute arbitrary code via a crafted PDF file that triggers a free of invalid data.
— MITRE
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1180?
CVE-2009-1180 is classified as a critical vulnerability that could potentially allow arbitrary code execution.
How do I fix CVE-2009-1180?
To fix CVE-2009-1180, upgrade your Xpdf installation to a version that has patched this vulnerability.
What versions of Xpdf are affected by CVE-2009-1180?
CVE-2009-1180 affects Xpdf versions 0.5a through 1.00a.
What actions should be taken if unable to upgrade due to CVE-2009-1180?
If unable to upgrade, consider restricting the use of Xpdf or using alternative PDF reading software until a patch is available.
Is there a known exploit for CVE-2009-1180?
Yes, CVE-2009-1180 can be exploited by creating a malicious PDF that triggers the invalid free() flaw.