Описание
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a heap-based buffer over-read vulnerability if an out-of-bounds font dictionary index is encountered, which allows an attacker to launch a denial of service attack.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 0.57.0-2ubuntu4 |
| devel | released | 0.57.0-2ubuntu4 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [0.24.5-2ubuntu4.9]] |
| esm-infra/xenial | released | 0.41.0-0ubuntu1.6 |
| precise/esm | DNE | |
| trusty | released | 0.24.5-2ubuntu4.9 |
| trusty/esm | DNE | trusty was released [0.24.5-2ubuntu4.9] |
| upstream | needs-triage | |
| vivid/ubuntu-core | DNE | |
| xenial | released | 0.41.0-0ubuntu1.6 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a heap-based buffer over-read vulnerability if an out-of-bounds font dictionary index is encountered, which allows an attacker to launch a denial of service attack.
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a heap-based buffer over-read vulnerability if an out-of-bounds font dictionary index is encountered, which allows an attacker to launch a denial of service attack.
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0. ...
The FoFiType1C::convertToType0 function in FoFiType1C.cc in Poppler 0.59.0 has a heap-based buffer over-read vulnerability if an out-of-bounds font dictionary index is encountered, which allows an attacker to launch a denial of service attack.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3