First published: Wed Apr 09 2025(Updated: )
USN-7426-1 fixed several vulnerabilities in poppler. This update provides the corresponding update for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Original advisory details: It was discovered that poppler incorrectly handled memory when opening certain PDF files. An attacker could possibly use this issue to cause poppler to crash, resulting in a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libpoppler73 | <0.62.0-2ubuntu2.14+esm5 | 0.62.0-2ubuntu2.14+esm5 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/poppler-utils | <0.62.0-2ubuntu2.14+esm5 | 0.62.0-2ubuntu2.14+esm5 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/libpoppler58 | <0.41.0-0ubuntu1.16+esm6 | 0.41.0-0ubuntu1.16+esm6 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/poppler-utils | <0.41.0-0ubuntu1.16+esm6 | 0.41.0-0ubuntu1.16+esm6 |
Ubuntu | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-7426-2 is considered high due to its potential for memory handling issues that could be exploited by attackers.
To fix USN-7426-2, update the affected packages to the latest versions: libpoppler73 and poppler-utils for Ubuntu 18.04 and libpoppler58 and poppler-utils for Ubuntu 16.04.
USN-7426-2 addresses vulnerabilities related to memory handling when opening certain PDF files, which could lead to potential attacks.
USN-7426-2 affects Ubuntu 16.04 LTS and Ubuntu 18.04 LTS due to vulnerable versions of the poppler library.
The packages involved in USN-7426-2 are libpoppler73, libpoppler58, and poppler-utils.