CVE-2009-3050: Buffer Overflow
Buffer overflow in the setpagesize function in util.cxx in HTMLDOC 1.8.27 and earlier allows context-dependent attackers to execute arbitrary code via a long MEDIA SIZE comment. NOTE: it was later reported that there were additional vectors in htmllib.cxx and ps-pdf.cxx using an AFM font file with a long glyph name, but these vectors do not cross privilege boundaries.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3050?
CVE-2009-3050 has a high severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2009-3050?
To fix CVE-2009-3050, upgrade to HTMLDOC version 1.8.28 or later to mitigate the buffer overflow vulnerability.
What versions of HTMLDOC are affected by CVE-2009-3050?
CVE-2009-3050 affects HTMLDOC versions 1.8.27 and earlier, including 1.8.26, 1.8.25, and 1.8.24.
What type of attack is demonstrated in CVE-2009-3050?
CVE-2009-3050 demonstrates a buffer overflow attack that can allow context-dependent attackers to execute arbitrary code.
Are there any known exploits for CVE-2009-3050?
Yes, there are known exploits for CVE-2009-3050 that target the vulnerability caused by long MEDIA SIZE comments.