MGASA-2018-0358

Source
https://advisories.mageia.org/MGASA-2018-0358.html
Import Source
https://advisories.mageia.org/MGASA-2018-0358.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2018-0358
Related
Published
2018-08-31T21:11:59Z
Modified
2018-08-31T20:28:22Z
Summary
Updated poppler packages fix security vulnerability
Details

The updated packages fix a security vulnerability:

Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its memory space, as demonstrated by pdfunite. This can result in memory corruption and denial of service. This may be exploitable when a victim opens a specially crafted PDF file (CVE-2018-13988).

References
Credits

Affected packages

Mageia:6 / poppler

Package

Name
poppler
Purl
pkg:rpm/mageia/poppler?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.52.0-3.8.mga6

Ecosystem specific

{
    "section": "core"
}