CVE-2018-10768
06.05.2018, 23:29
There is a NULL pointer dereference in the AnnotPath::getCoordsLength function in Annot.h in an Ubuntu package for Poppler 0.24.5. A crafted input will lead to a remote denial of service attack. Later Ubuntu packages such as for Poppler 0.41.0 are not affected.Enginsight
| Vendor | Product | Version |
|---|---|---|
| freedesktop | poppler | 𝑥 < 0.41.0 |
| canonical | ubuntu_linux | 14.04 |
| debian | debian_linux | 8.0 |
| redhat | ansible_tower | 3.3 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References