Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-20662

Опубликовано: 03 янв. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

РелизСтатусПримечание
bionic

released

0.62.0-2ubuntu2.9
cosmic

released

0.68.0-0ubuntu1.7
devel

not-affected

0.76.1-0ubuntu3
disco

released

0.74.0-0ubuntu1.2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was deferred [2019-03-28]]
esm-infra/bionic

released

0.62.0-2ubuntu2.9
esm-infra/xenial

released

0.41.0-0ubuntu1.14
precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

trusty was deferred [2019-03-28]

Показывать по

EPSS

Процентиль: 63%
0.00452
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
почти 7 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

CVSS3: 6.5
nvd
почти 7 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

CVSS3: 6.5
debian
почти 7 лет назад

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to caus ...

suse-cvrf
почти 2 года назад

Security update for poppler

suse-cvrf
почти 2 года назад

Security update for poppler

EPSS

Процентиль: 63%
0.00452
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3