CVE-2017-9776
22.06.2017, 21:29
Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| freedesktop | poppler | 𝑥 ≤ 0.55.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_server_aus | 7.4 |
| redhat | enterprise_linux_server_aus | 7.6 |
| redhat | enterprise_linux_server_eus | 7.4 |
| redhat | enterprise_linux_server_eus | 7.5 |
| redhat | enterprise_linux_server_eus | 7.6 |
| redhat | enterprise_linux_server_tus | 7.4 |
| redhat | enterprise_linux_server_tus | 7.6 |
| redhat | enterprise_linux_workstation | 6.0 |
| redhat | enterprise_linux_workstation | 7.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libpoppler-glib8 |
| ||||||||||||||
| libpoppler-qt4-4 |
| ||||||||||||||
| libpoppler44 |
| ||||||||||||||
| libpoppler60 |
| ||||||||||||||
| poppler-tools |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| poppler |
| ||||
| poppler-cpp |
| ||||
| poppler-cpp-devel |
| ||||
| poppler-demos |
| ||||
| poppler-devel |
| ||||
| poppler-glib |
| ||||
| poppler-glib-devel |
| ||||
| poppler-qt |
| ||||
| poppler-qt-devel |
| ||||
| poppler-qt4 |
| ||||
| poppler-qt4-devel |
| ||||
| poppler-utils |
|
References