CVE-2008-1693

NameCVE-2008-1693
DescriptionThe CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFview, KWord, and other applications, does not properly handle embedded fonts in PDF files, which allows remote attackers to execute arbitrary code via a crafted font object, related to dereferencing a function pointer associated with the type of this font object.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-1548-1, DSA-1606-1
Debian Bugs476842

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
poppler (PTS)buster0.71.0-5fixed
buster (security)0.71.0-5+deb10u3fixed
bullseye (security), bullseye20.09.0-3.1+deb11u1fixed
bookworm22.12.0-2fixed
sid, trixie24.02.0-5fixed
texlive-base (PTS)buster2018.20190227-2fixed
bullseye2020.20210202-3fixed
bookworm2022.20230122-3fixed
trixie2023.20240207-1fixed
sid2024.20240401-2fixed
texlive-bin (PTS)buster2018.20181218.49446-1fixed
buster (security)2018.20181218.49446-1+deb10u2fixed
bullseye (security), bullseye2020.20200327.54578-7+deb11u1fixed
bookworm2022.20220321.62855-5.1+deb12u1fixed
trixie2023.20230311.66589-9fixed
sid2024.20240313.70630+ds-2fixed
xpdf (PTS)buster3.04-13fixed
bullseye3.04+git20210103-3fixed
bookworm3.04+git20220601-1fixed
sid, trixie3.04+git20240202-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
kdegraphicssource(unstable)(not affected)
popplersourceetch0.4.5-5.1etch3DSA-1606-1
popplersource(unstable)0.6.4-1476842
swftoolssource(unstable)(not affected)
texlive-basesource(unstable)(not affected)
texlive-binsource(unstable)(not affected)
xpdfsourceetch3.01-9.1+etch3DSA-1548-1
xpdfsource(unstable)3.02

Notes

- kdegraphics <not-affected> (Vulnerable code not present)
- texlive-bin <not-affected> (code already has the needed fix)
see GfxFont.cc GfxFont::readEmbFontFile, line 362 checks if the font file is
a stream or not. Anyone knows a fixed version?
- texlive-base <not-affected> (Vulnerable code not present)
- swftools <not-affected> (Vulnerable file/code not present)

Search for package or bug name: Reporting problems