Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-0130

Опубликовано: 06 янв. 2026
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2026-0130: poppler security update (MODERATE)

[20.11.0-13]

  • Check bitmap in combine()
  • Resolves: RHEL-131786

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

poppler-cpp

20.11.0-13.el8_10

poppler-cpp-devel

20.11.0-13.el8_10

poppler-devel

20.11.0-13.el8_10

poppler-glib-devel

20.11.0-13.el8_10

poppler-glib-doc

20.11.0-13.el8_10

poppler-qt5-devel

20.11.0-13.el8_10

poppler

20.11.0-13.el8_10

poppler-glib

20.11.0-13.el8_10

poppler-qt5

20.11.0-13.el8_10

poppler-utils

20.11.0-13.el8_10

Oracle Linux x86_64

poppler-cpp

20.11.0-13.el8_10

poppler-cpp-devel

20.11.0-13.el8_10

poppler-devel

20.11.0-13.el8_10

poppler-glib-devel

20.11.0-13.el8_10

poppler-glib-doc

20.11.0-13.el8_10

poppler-qt5-devel

20.11.0-13.el8_10

poppler

20.11.0-13.el8_10

poppler-glib

20.11.0-13.el8_10

poppler-qt5

20.11.0-13.el8_10

poppler-utils

20.11.0-13.el8_10

Связанные CVE

Связанные уязвимости

CVSS3: 4
ubuntu
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
redhat
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
nvd
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
debian
10 месяцев назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bo ...

rocky
около 1 месяца назад

Moderate: poppler security update