Описание
Security update for poppler
This update for poppler fixes the following issues:
- CVE-2024-6239: Fixed crash when using pdfinfo with -dests parameter on malformed input files (bsc#1226916).
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15 SP5
libpoppler89-0.79.0-150200.3.32.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
libpoppler89-0.79.0-150200.3.32.1
Ссылки
- Link for SUSE-SU-2024:2334-1
- E-Mail link for SUSE-SU-2024:2334-1
- SUSE Security Ratings
- SUSE Bug 1226916
- SUSE CVE CVE-2024-6239 page
Описание
A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.
Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP5:libpoppler89-0.79.0-150200.3.32.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler89-0.79.0-150200.3.32.1
Ссылки
- CVE-2024-6239
- SUSE Bug 1226916