Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-10118

Опубликовано: 01 июн. 2026
Источник: redhat
CVSS3: 7.8
EPSS Низкий

Описание

A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the tilingPatternFill function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.

Отчет

This is an Important heap-based memory corruption flaw in Poppler's Splash backend. Processing a specially crafted PDF document can lead to an integer overflow, resulting in an undersized heap allocation and a subsequent out-of-bounds write. This could allow an attacker to achieve arbitrary code execution, disclose sensitive information, or cause a denial of service within the context of the application rendering the PDF. To successfully exploit this vulnerability the attacker needs to be able to supply the maliciously crafted PDF file to the application consuming poppler or trick the user to process the PDF file using the Poppler's backend.

Меры по смягчению последствий

To mitigate this issue, users should avoid opening untrusted or suspicious PDF documents with applications that utilize the Poppler library for rendering. Limiting exposure to untrusted content can reduce the risk of exploitation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6popplerNot affected
Red Hat Enterprise Linux 10popplerFixedRHSA-2026:2498510.06.2026
Red Hat Enterprise Linux 10.0 Extended Update SupportpopplerFixedRHSA-2026:2772022.06.2026
Red Hat Enterprise Linux 7 Extended Lifecycle Supportcompat-poppler022FixedRHSA-2026:2995225.06.2026
Red Hat Enterprise Linux 7 Extended Lifecycle SupportpopplerFixedRHSA-2026:3004425.06.2026
Red Hat Enterprise Linux 8popplerFixedRHSA-2026:2498410.06.2026
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportpopplerFixedRHSA-2026:2772722.06.2026
Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-OnpopplerFixedRHSA-2026:2772722.06.2026
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportpopplerFixedRHSA-2026:2772522.06.2026
Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-OnpopplerFixedRHSA-2026:2772522.06.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2460428poppler: Integer overflow in Poppler SplashOutputDev::tilingPatternFill leads to heap buffer overflow via unchecked dimension multiplication

EPSS

Процентиль: 17%
0.00252
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 месяцев назад

A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.

CVSS3: 7.8
nvd
около 2 месяцев назад

A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.

CVSS3: 7.8
debian
около 2 месяцев назад

A flaw was found in Poppler's Splash backend. A remote attacker could ...

rocky
около 2 месяцев назад

Important: poppler security update

rocky
около 2 месяцев назад

Important: poppler security update

EPSS

Процентиль: 17%
0.00252
Низкий

7.8 High

CVSS3