CVE-2010-5110: Input Validation
Published Aug 29, 2014
·Updated
DCTStream.cc in Poppler before 0.13.3 allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
Affected Software
3 affected components
Freedesktop poppler<=0.13.2
Freedesktop poppler=0.13.0
Freedesktop poppler=0.13.1
Remediation
Event History
Aug 29, 2014
CVE Published
04:55 PM
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-5110?
CVE-2010-5110 has a severity rating that allows for denial of service through remote exploitation.
2
How do I fix CVE-2010-5110?
To fix CVE-2010-5110, upgrade Poppler to version 0.13.3 or later.
3
What types of attacks are associated with CVE-2010-5110?
CVE-2010-5110 is associated with denial of service attacks via crafted PDF files.
4
Which versions of Poppler are affected by CVE-2010-5110?
CVE-2010-5110 affects Poppler versions prior to 0.13.3, including 0.13.0, 0.13.1, and up to 0.13.2.
5
What impact does CVE-2010-5110 have on systems?
The impact of CVE-2010-5110 is a potential crash of the Poppler library when processing malicious PDF files.