REDHAT-BUG-1626618: Low severity poppler data vulnerability
A flaw was found in Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this for a DoS attack.
References: https://bugzilla.redhat.com/showbug.cgi?id=1622951
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1626618?
REDHAT-BUG-1626618 is classified as a denial of service vulnerability due to potential infinite recursion.
How do I fix REDHAT-BUG-1626618?
To fix REDHAT-BUG-1626618, update Poppler to the latest version where the vulnerability has been patched.
What impact does REDHAT-BUG-1626618 have on system security?
REDHAT-BUG-1626618 can allow a remote attacker to trigger a denial of service by exploiting the vulnerability.
Which versions of Poppler are affected by REDHAT-BUG-1626618?
Poppler version 0.68.0 is specifically noted as affected by REDHAT-BUG-1626618.
Is there any workaround for REDHAT-BUG-1626618?
Currently, there are no known workarounds for REDHAT-BUG-1626618 aside from applying the necessary software updates.