Wind River Support Network

HomeDefectsLIN9-7746
Fixed

LIN9-7746 : Security Advisory - poppler - CVE-2018-19060

Created: Nov 16, 2018    Updated: Dec 24, 2018
Resolved Date: Nov 22, 2018
Found In Version: 9.0.0.19
Fix Version: 9.0.0.19
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

An issue was discovered in Poppler 0.71.0. There is a NULL pointer dereference in goo/GooString.h, will lead to denial of service, as demonstrated by utils/pdfdetach.cc not validating a filename of an embedded file before constructing a save path.

https://nvd.nist.gov/vuln/detail/CVE-2018-19060

Other Downloads


CVEs


Live chat
Online