First published: Fri Apr 05 2019(Updated: )
An issue was discovered in Poppler 0.74.0. There is a NULL pointer dereference in the function SplashClip::clipAALine at splash/SplashClip.cc.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
freedesktop poppler | =0.74.0 | |
debian/poppler | 20.09.0-3.1+deb11u1 22.12.0-2 24.08.0-4 |
https://gitlab.freedesktop.org/poppler/poppler/commit/8dbe2e6c480405dab9347075cf4be626f90f1d05
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-10873 is medium.
The affected software for CVE-2019-10873 is Poppler 0.74.0.
To fix CVE-2019-10873, you should update Poppler to version 0.74.0-0ubuntu1.2 if you are using Ubuntu.
You can find more information about CVE-2019-10873 at the following references: [1] [2] [3].
The Common Weakness Enumeration (CWE) for CVE-2019-10873 is CWE-476.