CVE-2019-10871: Medium severity poppler data vulnerability
An issue was discovered in Poppler 0.74.0. There is a heap-based buffer over-read in the function PSOutputDev::checkPageSlice at PSOutputDev.cc.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-10871?
CVE-2019-10871 is a vulnerability in Poppler 0.74.0 that allows for a heap-based buffer over-read.
What is the severity of CVE-2019-10871?
The severity of CVE-2019-10871 is medium, with a severity value of 6.5.
How does CVE-2019-10871 affect Poppler?
CVE-2019-10871 affects Poppler 0.74.0, specifically in the function PSOutputDev::checkPageSlice at PSOutputDev.cc.
How can I fix CVE-2019-10871?
To fix CVE-2019-10871, update to a version of Poppler that is not affected by this vulnerability.
Where can I find more information about CVE-2019-10871?
More information about CVE-2019-10871 can be found at the following references: http://www.securityfocus.com/bid/107862, https://access.redhat.com/errata/RHSA-2019:2713, https://gitlab.freedesktop.org/poppler/poppler/issues/751.