Описание
Security update for poppler
This update for poppler fixes the following issues:
- CVE-2024-56378: out-of-bounds read within JBIG2Bitmap::combine, which can lead to an application crash. (bsc#1234795)
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15 SP6
libpoppler-cpp0-24.03.0-150600.3.5.1
libpoppler-devel-24.03.0-150600.3.5.1
libpoppler-glib-devel-24.03.0-150600.3.5.1
libpoppler-glib8-24.03.0-150600.3.5.1
libpoppler135-24.03.0-150600.3.5.1
poppler-tools-24.03.0-150600.3.5.1
typelib-1_0-Poppler-0_18-24.03.0-150600.3.5.1
SUSE Linux Enterprise Module for Package Hub 15 SP6
libpoppler-cpp0-24.03.0-150600.3.5.1
libpoppler-devel-24.03.0-150600.3.5.1
libpoppler-glib8-32bit-24.03.0-150600.3.5.1
libpoppler-qt5-1-24.03.0-150600.3.5.1
libpoppler-qt5-devel-24.03.0-150600.3.5.1
libpoppler-qt6-3-24.03.0-150600.3.5.1
libpoppler-qt6-devel-24.03.0-150600.3.5.1
libpoppler135-32bit-24.03.0-150600.3.5.1
openSUSE Leap 15.6
libpoppler-cpp0-24.03.0-150600.3.5.1
libpoppler-cpp0-32bit-24.03.0-150600.3.5.1
libpoppler-devel-24.03.0-150600.3.5.1
libpoppler-glib-devel-24.03.0-150600.3.5.1
libpoppler-glib8-24.03.0-150600.3.5.1
libpoppler-glib8-32bit-24.03.0-150600.3.5.1
libpoppler-qt5-1-24.03.0-150600.3.5.1
libpoppler-qt5-1-32bit-24.03.0-150600.3.5.1
libpoppler-qt5-devel-24.03.0-150600.3.5.1
libpoppler-qt6-3-24.03.0-150600.3.5.1
libpoppler-qt6-devel-24.03.0-150600.3.5.1
libpoppler135-24.03.0-150600.3.5.1
libpoppler135-32bit-24.03.0-150600.3.5.1
poppler-tools-24.03.0-150600.3.5.1
typelib-1_0-Poppler-0_18-24.03.0-150600.3.5.1
Ссылки
- Link for SUSE-SU-2024:4435-1
- E-Mail link for SUSE-SU-2024:4435-1
- SUSE Security Ratings
- SUSE Bug 1234795
- SUSE CVE CVE-2024-56378 page
Описание
libpoppler.so in Poppler through 24.12.0 has an out-of-bounds read vulnerability within the JBIG2Bitmap::combine function in JBIG2Stream.cc.
Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler-cpp0-24.03.0-150600.3.5.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler-devel-24.03.0-150600.3.5.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler-glib-devel-24.03.0-150600.3.5.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libpoppler-glib8-24.03.0-150600.3.5.1
Ссылки
- CVE-2024-56378
- SUSE Bug 1234795