REDHAT-BUG-1665263: Low severity poppler data vulnerability
A flaw was found in Poppler 0.72.0. A reachable Object::dictLookup assertion in FileSpec class in FileSpec.cc file allows attackers to cause a denial of service due to the lack of a check for the dict data type.
References: https://gitlab.freedesktop.org/poppler/poppler/issues/704
Upstream Patch: https://gitlab.freedesktop.org/poppler/poppler/commit/de0c0b8324e776f0b851485e0fc9622fc35695b7
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1665263?
REDHAT-BUG-1665263 is classified as a denial of service vulnerability.
How do I fix REDHAT-BUG-1665263?
To resolve REDHAT-BUG-1665263, update Poppler to the latest version that contains the fix.
What software is affected by REDHAT-BUG-1665263?
REDHAT-BUG-1665263 affects Poppler version 0.72.0.
Can REDHAT-BUG-1665263 be exploited remotely?
Yes, REDHAT-BUG-1665263 can potentially be exploited by attackers remotely.
What type of issue does REDHAT-BUG-1665263 represent?
REDHAT-BUG-1665263 represents a flaw in data type checking in the Poppler library.