CVE-2005-2097

Source
https://nvd.nist.gov/vuln/detail/CVE-2005-2097
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2005-2097.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2005-2097
Downstream
Published
2005-08-16T04:00:00Z
Modified
2025-08-09T19:01:27Z
Summary
[none]
Details

xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.

References

Affected packages