Описание
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | poppler | Will not fix | ||
Red Hat Enterprise Linux 6 | poppler | Will not fix | ||
Red Hat Enterprise Linux 7 | evince | Fixed | RHSA-2019:2022 | 06.08.2019 |
Red Hat Enterprise Linux 7 | okular | Fixed | RHSA-2019:2022 | 06.08.2019 |
Red Hat Enterprise Linux 7 | poppler | Fixed | RHSA-2019:2022 | 06.08.2019 |
Red Hat Enterprise Linux 8 | poppler | Fixed | RHSA-2019:2713 | 12.09.2019 |
Показывать по
Дополнительная информация
Статус:
3.3 Low
CVSS3
Связанные уязвимости
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows atta ...
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
Уязвимость библиотеки для отображения PDF-файлов Poppler, позволяющая нарушителю вызвать отказ в обслуживании
3.3 Low
CVSS3