RHSA-2024:2979: Moderate: poppler security update
Moderate: poppler security update
Other sources
Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.Security Fix(es): poppler: NULL pointer dereference in FoFiType1C::convertToType1 (CVE-2020-36024) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Additional Changes:For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.10 Release Notes linked from the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:2979?
The severity of RHSA-2024:2979 is classified as moderate.
How do I fix RHSA-2024:2979?
To resolve RHSA-2024:2979, update the poppler package to version 20.11.0-11.el8 or later.
What vulnerability does RHSA-2024:2979 address?
RHSA-2024:2979 addresses a NULL pointer dereference vulnerability in the poppler library, identified as CVE-2020-36024.
Which applications are affected by RHSA-2024:2979?
Applications using the poppler library for PDF rendering, such as Evince, could be affected by RHSA-2024:2979.
What is the impact of the vulnerability in RHSA-2024:2979?
The impact of the vulnerability in RHSA-2024:2979 could lead to application crashes or unexpected behaviors when handling PDF documents.