A floating-point exception in the PSStack::roll function of Poppler
before 25.04.0 can cause an application to crash when handling malformed
inputs associated with INT_MIN. (CVE-2025-32364)
Poppler before 25.04.0 allows crafted input files to trigger
out-of-bounds reads in the JBIG2Bitmap::combine function in
JBIG2Stream.cc because of a misplaced isOk check. (CVE-2025-32365)
- https://bugs.mageia.org/show_bug.cgi?id=34182
- https://ubuntu.com/security/notices/USN-7426-1
-
- https://www.cve.org/CVERecord?id=CVE-2025-32364
- https://www.cve.org/CVERecord?id=CVE-2025-32365
- 9/core/poppler-23.02.0-1.5.mga9
Get the latest Linux and open source security news straight to your inbox.