Описание
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a NULL pointer dereference vulnerability because a data structure is not initialized, which allows an attacker to launch a denial of service attack.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 0.57.0-2ubuntu4 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [0.24.5-2ubuntu4.7]] |
| esm-infra/xenial | released | 0.41.0-0ubuntu1.4 |
| precise/esm | DNE | |
| trusty | released | 0.24.5-2ubuntu4.7 |
| trusty/esm | DNE | trusty was released [0.24.5-2ubuntu4.7] |
| upstream | needs-triage | |
| vivid/ubuntu-core | DNE | |
| xenial | released | 0.41.0-0ubuntu1.4 |
| zesty | released | 0.48.0-2ubuntu2.3 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a NULL pointer dereference vulnerability because a data structure is not initialized, which allows an attacker to launch a denial of service attack.
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a NULL pointer dereference vulnerability because a data structure is not initialized, which allows an attacker to launch a denial of service attack.
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0. ...
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a NULL pointer dereference vulnerability because a data structure is not initialized, which allows an attacker to launch a denial of service attack.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3