Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-0126

Опубликовано: 06 янв. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-0126: poppler security update (MODERATE)

[21.01.0-23]

  • Bump release for build inheritance
  • Resolves: RHEL-131792

[21.01.0-22]

  • Check bitmap in combine()
  • Resolves: RHEL-131795, RHEL-131792

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

poppler-cpp-devel

21.01.0-23.el9_7

poppler-devel

21.01.0-23.el9_7

poppler-glib-devel

21.01.0-23.el9_7

poppler-glib-doc

21.01.0-23.el9_7

poppler-qt5-devel

21.01.0-23.el9_7

poppler

21.01.0-23.el9_7

poppler-cpp

21.01.0-23.el9_7

poppler-glib

21.01.0-23.el9_7

poppler-qt5

21.01.0-23.el9_7

poppler-utils

21.01.0-23.el9_7

Oracle Linux x86_64

poppler

21.01.0-23.el9_7

poppler-cpp

21.01.0-23.el9_7

poppler-glib

21.01.0-23.el9_7

poppler-qt5

21.01.0-23.el9_7

poppler-utils

21.01.0-23.el9_7

poppler-cpp-devel

21.01.0-23.el9_7

poppler-devel

21.01.0-23.el9_7

poppler-glib-devel

21.01.0-23.el9_7

poppler-glib-doc

21.01.0-23.el9_7

poppler-qt5-devel

21.01.0-23.el9_7

Связанные CVE

Связанные уязвимости

CVSS3: 4
ubuntu
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
redhat
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
nvd
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
debian
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bo ...

rocky
около 1 месяца назад

Moderate: poppler security update