Описание
The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | |
devel | ignored | |
disco | ignored | |
eoan | ignored | |
esm-apps/bionic | ignored | |
esm-apps/jammy | ignored | |
esm-apps/noble | ignored | |
esm-apps/xenial | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 0.62.0-2ubuntu2.11 |
devel | not-affected | |
disco | ignored | end of life |
eoan | ignored | end of life |
esm-infra-legacy/trusty | DNE | |
esm-infra/bionic | not-affected | 0.62.0-2ubuntu2.11 |
esm-infra/focal | not-affected | 0.86.1-0ubuntu1 |
esm-infra/xenial | not-affected | 0.41.0-0ubuntu1.15 |
focal | not-affected | 0.86.1-0ubuntu1 |
groovy | not-affected |
Показывать по
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.
The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.
The JPXStream::init function in Poppler 0.78.0 and earlier doesn't che ...
The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.
Уязвимость функции JPXStream::init библиотеки для отображения PDF-файлов Poppler, связанная с целочисленным переполнением значения, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3