CVE-2019-10873: Null Pointer Dereference
Published Apr 5, 2019
·Updated
An issue was discovered in Poppler 0.74.0. There is a NULL pointer dereference in the function SplashClip::clipAALine at splash/SplashClip.cc.
Affected Software
2 affected componentsFixes available
Freedesktop poppler=0.74.0
debian/poppler
20.09.0-3.1+deb11u120.09.0-3.1+deb11u222.12.0-2+deb12u125.03.0-5+deb13u225.03.0-11.1
Remediation
Event History
Apr 5, 2019
CVE Published
via MITRE·03:17 AM
Data Sourced
via MITRE·03:17 AM
Description
Feb 20, 2026
Data Sourced
via Ubuntu·01:27 AM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·01:28 AM
Description
Data Sourced
via Debian·01:28 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-10873?
The severity of CVE-2019-10873 is medium.
2
What is the affected software for CVE-2019-10873?
The affected software for CVE-2019-10873 is Poppler 0.74.0.
3
How can I fix CVE-2019-10873?
To fix CVE-2019-10873, you should update Poppler to version 0.74.0-0ubuntu1.2 if you are using Ubuntu.
4
Where can I find more information about CVE-2019-10873?
You can find more information about CVE-2019-10873 at the following references: [1] [2] [3].
5
What is the Common Weakness Enumeration (CWE) for CVE-2019-10873?
The Common Weakness Enumeration (CWE) for CVE-2019-10873 is CWE-476.