REDHAT-BUG-1466442: Buffer Overflow
Poppler has a stack-based buffer overflow in GfxState.cc, which allows attackers to cause a denial of service (application crash) via a crafted PDF document.
Upstream issue:
https://bugs.freedesktop.org/showbug.cgi?id=101540
Upstream patch:
https://cgit.freedesktop.org/poppler/poppler/commit/?id=8f4ff8243a3d599ff2a6c08b1da389e606ba4fc9
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1466442?
The severity of REDHAT-BUG-1466442 is considered high due to the stack-based buffer overflow vulnerability that leads to application crashes.
How do I fix REDHAT-BUG-1466442?
To fix REDHAT-BUG-1466442, update Poppler to the latest version that addresses this buffer overflow vulnerability.
What kind of attack is possible with REDHAT-BUG-1466442?
Attackers can exploit REDHAT-BUG-1466442 by crafting malicious PDF documents that cause a denial of service when opened.
Which software is affected by REDHAT-BUG-1466442?
The affected software for REDHAT-BUG-1466442 is Poppler Utilities.
What impact does REDHAT-BUG-1466442 have on systems?
The impact of REDHAT-BUG-1466442 on systems includes potential crashes of applications that rely on Poppler for PDF processing.