CVE-2017-14926: Null Pointer Dereference
Published Sep 29, 2017
·Updated
In Poppler 0.59.0, a NULL Pointer Dereference exists in AnnotRichMedia::Content::Content in Annot.cc via a crafted PDF document.
Affected Software
2 affected components
Freedesktop poppler=0.59.0
Debian Debian Linux=9.0
Event History
Sep 29, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14926?
CVE-2017-14926 has a medium severity due to its potential to cause application crashes.
2
How do I fix CVE-2017-14926?
To fix CVE-2017-14926, update Poppler to a version higher than 0.59.0 where the vulnerability is addressed.
3
What software is affected by CVE-2017-14926?
CVE-2017-14926 affects Poppler version 0.59.0 and Debian Linux 9.0.
4
What does CVE-2017-14926 exploit?
CVE-2017-14926 exploits a NULL Pointer Dereference in AnnotRichMedia::Content in the Annot.cc file.
5
Is CVE-2017-14926 a serious vulnerability?
While CVE-2017-14926 allows for denial of service, it is not considered a serious security threat beyond application crashes.