Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-20662

Опубликовано: 03 янв. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

РелизСтатусПримечание
bionic

released

0.62.0-2ubuntu2.9
cosmic

released

0.68.0-0ubuntu1.7
devel

not-affected

0.76.1-0ubuntu3
disco

released

0.74.0-0ubuntu1.2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was deferred [2019-03-28]]
esm-infra/bionic

not-affected

0.62.0-2ubuntu2.9
esm-infra/xenial

not-affected

0.41.0-0ubuntu1.14
precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

trusty was deferred [2019-03-28]

Показывать по

EPSS

Процентиль: 64%
0.00468
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
больше 6 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

CVSS3: 6.5
nvd
больше 6 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

CVSS3: 6.5
debian
больше 6 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to caus ...

suse-cvrf
больше 1 года назад

Security update for poppler

suse-cvrf
больше 1 года назад

Security update for poppler

EPSS

Процентиль: 64%
0.00468
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3