Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:0128

Опубликовано: 09 янв. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: poppler security update

Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.

Security Fix(es):

  • poppler: Out-of-Bounds Read in Poppler (CVE-2025-32365)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
poppler-qt6aarch647.el10_1poppler-qt6-24.02.0-7.el10_1.aarch64.rpm
poppler-glibaarch647.el10_1poppler-glib-24.02.0-7.el10_1.aarch64.rpm
poppleraarch647.el10_1poppler-24.02.0-7.el10_1.aarch64.rpm
poppler-utilsaarch647.el10_1poppler-utils-24.02.0-7.el10_1.aarch64.rpm
poppler-cppaarch647.el10_1poppler-cpp-24.02.0-7.el10_1.aarch64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 4
ubuntu
больше 1 года назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 3.3
redhat
больше 1 года назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
nvd
больше 1 года назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in JBIG2Stream.cc because of a misplaced isOk check.

CVSS3: 4
debian
больше 1 года назад

Poppler before 25.04.0 allows crafted input files to trigger out-of-bo ...

rocky
7 месяцев назад

Moderate: poppler security update