Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Mageia: 2018-0358 Moderate: Poppler Memory Corruption Risk Advisory

mageia
Calendar Grey August 31, 2018
Dist Mageia Esm H88
Recently released poppler updates in Mageia address a critical out of bounds flaw that poses a risk of memory corruption and potential service interruptions.
The updated packages fix a security vulnerability: Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its me...

Summary

The updated packages fix a security vulnerability:
Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its memory space, as demonstrated by pdfunite. This can result in memory corruption and denial of service. This may be exploitable when a victim opens a specially crafted PDF file (CVE-2018-13988).

References

- https://bugs.mageia.org/show_bug.cgi?id=23383

- https://www.cve.org/CVERecord?id=CVE-2018-13988

Resolution

SRPMS

- 6/core/poppler-0.52.0-3.8.mga6

Publication date: 31 Aug 2018
URL: https://advisories.mageia.org/MGASA-2018-0358.html
Type: security
CVE: CVE-2018-13988

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here