Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2024:2334-1

Опубликовано: 08 июл. 2024
Источник: suse-cvrf

Описание

Security update for poppler

This update for poppler fixes the following issues:

  • CVE-2024-6239: Fixed crash when using pdfinfo with -dests parameter on malformed input files (bsc#1226916).

Список пакетов

SUSE Linux Enterprise Module for Basesystem 15 SP5
libpoppler89-0.79.0-150200.3.32.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
libpoppler89-0.79.0-150200.3.32.1

Описание

A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.


Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP5:libpoppler89-0.79.0-150200.3.32.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler89-0.79.0-150200.3.32.1

Ссылки
Уязвимость SUSE-SU-2024:2334-1