Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:02356-1

Опубликовано: 17 июл. 2025
Источник: suse-cvrf

Описание

Security update for poppler

This update for poppler fixes the following issues:

  • CVE-2025-52886: Fixed an integer overflow that can lead to a use-after-free. (bsc#1245625)

Список пакетов

SUSE Enterprise Storage 7.1
libpoppler-cpp0-0.79.0-150200.3.41.1
libpoppler-devel-0.79.0-150200.3.41.1
libpoppler-glib-devel-0.79.0-150200.3.41.1
libpoppler-glib8-0.79.0-150200.3.41.1
libpoppler89-0.79.0-150200.3.41.1
poppler-tools-0.79.0-150200.3.41.1
typelib-1_0-Poppler-0_18-0.79.0-150200.3.41.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
libpoppler-cpp0-0.79.0-150200.3.41.1
libpoppler-devel-0.79.0-150200.3.41.1
libpoppler-glib-devel-0.79.0-150200.3.41.1
libpoppler-glib8-0.79.0-150200.3.41.1
libpoppler89-0.79.0-150200.3.41.1
poppler-tools-0.79.0-150200.3.41.1
typelib-1_0-Poppler-0_18-0.79.0-150200.3.41.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server 15 SP3-LTSS
libpoppler-cpp0-0.79.0-150200.3.41.1
libpoppler-devel-0.79.0-150200.3.41.1
libpoppler-glib-devel-0.79.0-150200.3.41.1
libpoppler-glib8-0.79.0-150200.3.41.1
libpoppler89-0.79.0-150200.3.41.1
poppler-tools-0.79.0-150200.3.41.1
typelib-1_0-Poppler-0_18-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server 15 SP4-LTSS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server 15 SP5-LTSS
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
libpoppler-cpp0-0.79.0-150200.3.41.1
libpoppler-devel-0.79.0-150200.3.41.1
libpoppler-glib-devel-0.79.0-150200.3.41.1
libpoppler-glib8-0.79.0-150200.3.41.1
libpoppler89-0.79.0-150200.3.41.1
poppler-tools-0.79.0-150200.3.41.1
typelib-1_0-Poppler-0_18-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
libpoppler89-0.79.0-150200.3.41.1
SUSE Linux Enterprise Server for SAP Applications 15 SP5
libpoppler89-0.79.0-150200.3.41.1
SUSE Manager Proxy 4.3
libpoppler89-0.79.0-150200.3.41.1
SUSE Manager Server 4.3
libpoppler89-0.79.0-150200.3.41.1

Описание

Poppler is a PDF rendering library. Versions prior to 25.06.0 use `std::atomic_int` for reference counting. Because `std::atomic_int` is only 32 bits, it is possible to overflow the reference count and trigger a use-after-free. Version 25.06.0 patches the issue.


Затронутые продукты
SUSE Enterprise Storage 7.1:libpoppler-cpp0-0.79.0-150200.3.41.1
SUSE Enterprise Storage 7.1:libpoppler-devel-0.79.0-150200.3.41.1
SUSE Enterprise Storage 7.1:libpoppler-glib-devel-0.79.0-150200.3.41.1
SUSE Enterprise Storage 7.1:libpoppler-glib8-0.79.0-150200.3.41.1

Ссылки
Уязвимость SUSE-SU-2025:02356-1