Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-19149

Опубликовано: 08 нояб. 2018
Источник: redhat
CVSS3: 3.3

Описание

Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from poppler_annot_file_attachment_get_attachment.

Отчет

This issue affects the versions of poppler as shipped with Red Hat Enterprise Linux 7.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5popplerNot affected
Red Hat Enterprise Linux 6popplerNot affected
Red Hat Enterprise Linux 8popplerNot affected
Red Hat Enterprise Linux 7evinceFixedRHSA-2019:202206.08.2019
Red Hat Enterprise Linux 7okularFixedRHSA-2019:202206.08.2019
Red Hat Enterprise Linux 7popplerFixedRHSA-2019:202206.08.2019

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1649457poppler: NULL pointer dereference in _poppler_attachment_new

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 6 лет назад

Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from poppler_annot_file_attachment_get_attachment.

CVSS3: 6.5
nvd
больше 6 лет назад

Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from poppler_annot_file_attachment_get_attachment.

CVSS3: 6.5
debian
больше 6 лет назад

Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attac ...

CVSS3: 6.5
github
около 3 лет назад

Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from poppler_annot_file_attachment_get_attachment.

oracle-oval
почти 6 лет назад

ELSA-2019-2022: poppler security, bug fix, and enhancement update (MODERATE)

3.3 Low

CVSS3