NewStart CGSL MAIN 7.02 : xpdf Multiple Vulnerabilities (NS-SA-2026-0109)

low Nessus Plugin ID 343585

Synopsis

The remote NewStart CGSL host is affected by multiple vulnerabilities.

Description

The remote NewStart CGSL host, running version MAIN 7.02, has xpdf packages installed that are affected by multiple vulnerabilities:

- In Xpdf 4.05 (and earlier), invalid header info in a DCT (JPEG) stream can lead to an uninitialized variable in the DCT decoder. The proof-of-concept PDF file causes a segfault attempting to read from an invalid address. (CVE-2024-7868)

- Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by negative object number in indirect reference in the input PDF file. (CVE-2024-2971)

- In Xpdf 4.05 (and earlier), a PDF object loop in an object stream leads to infinite recursion and a stack overflow. (CVE-2024-3247)

- Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by long Unicode sequence in ActualText.
(CVE-2024-3900)

- Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root problem was a bounds check that was being optimized away by modern compilers.
(CVE-2024-4141)

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Upgrade the vulnerable CGSL xpdf packages. Note that updated packages may not be available yet. Please contact ZTE for more information.

See Also

https://security.gd-linux.com/info/CVE-2024-2971

https://security.gd-linux.com/info/CVE-2024-3247

https://security.gd-linux.com/info/CVE-2024-3900

https://security.gd-linux.com/info/CVE-2024-4141

https://security.gd-linux.com/info/CVE-2024-4568

https://security.gd-linux.com/info/CVE-2024-4976

https://security.gd-linux.com/info/CVE-2024-7866

https://security.gd-linux.com/info/CVE-2024-7867

https://security.gd-linux.com/info/CVE-2024-7868

https://security.gd-linux.com/info/CVE-2025-11896

https://security.gd-linux.com/info/CVE-2025-2574

https://security.gd-linux.com/info/CVE-2025-3154

https://security.gd-linux.com/notice/NS-SA-2026-0109

Plugin Details

Severity: Low

ID: 343585

File Name: newstart_cgsl_NS-SA-2026-0109_xpdf.nasl

Version: 1.1

Type: Local

Published: 9/8/2026

Updated: 9/8/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.28

CVSS v2

Risk Factor: High

Base Score: 8.5

Temporal Score: 6.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:C

CVSS Score Source: CVE-2024-7868

CVSS v3

Risk Factor: High

Base Score: 8.2

Temporal Score: 7.4

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

CVSS v4

Risk Factor: Low

Base Score: 2.1

Threat Score: 1.2

Threat Vector: CVSS:4.0/E:P

Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

CVSS Score Source: CVE-2025-3154

Vulnerability Information

CPE: cpe:/o:zte:cgsl_main:7, p-cpe:/a:zte:cgsl_main:xpdf-devel, p-cpe:/a:zte:cgsl_main:xpdf-doc, p-cpe:/a:zte:cgsl_main:xpdf

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/ZTE-CGSL/release, Host/ZTE-CGSL/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/7/2026

Vulnerability Publication Date: 3/26/2024

Reference Information

CVE: CVE-2024-2971, CVE-2024-3247, CVE-2024-3900, CVE-2024-4141, CVE-2024-4568, CVE-2024-4976, CVE-2024-7866, CVE-2024-7867, CVE-2024-7868, CVE-2025-11896, CVE-2025-2574, CVE-2025-3154