Wind River Support Network

HomeDefectsLIN9-5600
Acknowledged

LIN9-5600 : Security Advisory - poppler - CVE-2017-14929

Created: Oct 16, 2017    Updated: May 29, 2018
Found In Version: 9.0.0.11
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

In Poppler 0.59.0, memory corruption occurs in a call to Object::dictLookup() in Object.h after a repeating series of Gfx::display, Gfx::go, Gfx::execOp, Gfx::opFill, Gfx::doPatternFill, Gfx::doTilingPatternFill and Gfx::drawForm calls (aka a Gfx.cc infinite loop), a different vulnerability than CVE-2017-14519.

https://nvd.nist.gov/vuln/detail/CVE-2017-14929

CVEs


Live chat
Online