CVE-2009-1187: Integer Overflow
Integer overflow in the JBIG2 decoding feature in Poppler before 0.10.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to CairoOutputDev (CairoOutputDev.cc).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1187?
CVE-2009-1187 is classified as a high severity vulnerability due to its potential to cause denial of service and arbitrary code execution.
How do I fix CVE-2009-1187?
To fix CVE-2009-1187, upgrade Poppler to version 0.10.6 or later, which contains the necessary patches.
What are the vulnerable versions of Poppler related to CVE-2009-1187?
Vulnerable versions of Poppler related to CVE-2009-1187 include any version prior to 0.10.6.
What type of attack does CVE-2009-1187 relate to?
CVE-2009-1187 relates to an integer overflow attack that can lead to a crash or potential arbitrary code execution.
Where does CVE-2009-1187 affect Poppler?
CVE-2009-1187 affects the JBIG2 decoding feature within the Poppler library, specifically within CairoOutputDev.