Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-37052

Опубликовано: 28 июл. 2022
Источник: redhat
CVSS3: 6.5

Описание

A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject.

A vulnerability was found in Poppler, where a reachable assertion allows attackers to cause a denial of service due to a failure in markObject.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6popplerOut of support scope
Red Hat Enterprise Linux 7compat-poppler022Out of support scope
Red Hat Enterprise Linux 7popplerOut of support scope
Red Hat Enterprise Linux 8cups-containerNot affected
Red Hat Enterprise Linux 8gimp-flatpak-containerWill not fix
Red Hat Enterprise Linux 8gimp:flatpak/popplerAffected
Red Hat Enterprise Linux 8popplerAffected
Red Hat Enterprise Linux 9cups-containerNot affected
Red Hat Enterprise Linux 9inkscape:flatpak/popplerNot affected
Red Hat Enterprise Linux 9libreoffice-flatpak-containerWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2234530poppler: reachable assertion due to a failure in markObject()

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 2 лет назад

A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject.

CVSS3: 6.5
nvd
больше 2 лет назад

A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject.

CVSS3: 6.5
debian
больше 2 лет назад

A reachable Object::getString assertion in Poppler 22.07.0 allows atta ...

CVSS3: 6.5
github
больше 2 лет назад

A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failure in markObject.

CVSS3: 6.5
fstec
больше 2 лет назад

Уязвимость компонента Object::getString библиотеки для рендеринга PDF-файлов Poppler, позволяющая нарушителю вызвать отказ в обслуживании

6.5 Medium

CVSS3