This update for poppler fixes the following issues:
- CVE-2017-18267: Fixed an infinite recursion that would allow remote
attackers to cause a denial of service (bsc#1092945).
- CVE-2018-13988: Added an improper implementation check which otherwise
could allow buffer overflows, memory corruption, and denial of service
(bsc#1102531).
- CVE-2018-16646: Fixed an infinite recursion which could allow a
denial-of-service attack via a specially crafted PDF file (bsc#1107597).
- CVE-2018-18897: Fixed a memory leak (bsc#1114966).
- CVE-2018-19058: Fixed a bug which could allow a denial-of-service attack
via a specially crafted PDF file (bsc#1115187).
- CVE-2018-19059: Fixed an out-of-bounds read access which could allow a
denial-of-service attack (bsc#1115186).
- CVE-2018-19060: Fixed a NULL pointer dereference which could allow a
denial-of-service attack (bsc#1115185).
- CVE-2018-19149: Fixed a NULL pointer dereference which...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2021-3854=1
- openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64):
libpoppler73-0.62.0-4.6.1
libpoppler73-debuginfo-0.62.0-4.6.1
- openSUSE Leap 15.3 (x86_64):
libpoppler73-32bit-0.62.0-4.6.1
libpoppler73-32bit-debuginfo-0.62.0-4.6.1
https://www.suse.com/security/cve/CVE-2017-18267.html
https://www.suse.com/security/cve/CVE-2018-13988.html
https://www.suse.com/security/cve/CVE-2018-16646.html
https://www.suse.com/security/cve/CVE-2018-18897.html
https://www.suse.com/security/cve/CVE-2018-19058.html
https://www.suse.com/security/cve/CVE-2018-19059.html
https://www.suse.com/security/cve/CVE-2018-19060.html
https://www.suse.com/security/cve/CVE-2018-19149.html
https://www.suse.com/security/cve/CVE-2018-20481.html
https://www.suse.com/security/cve/CVE-2018-20551.html
https://www.suse.com/security/cve/CVE-2018-20650.html
https://www.suse.com/security/cve/CVE-2018-20662.html
https://www.suse.com/security/cve/CVE-2019-10871.html
https://www.suse.com/security/cve/CVE-2019-10872.html
https://https://www.suse.com/security/cve/CVE-2019-14494.html
https://www.suse.com/security/cve/CVE-2019-7310.html
https://www.suse.com/security/cve/CVE-2019-9200.html
https://www.suse.com/security/cve/CVE-2019-9631.html
https://www.suse.com/security/cve/CVE-201...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.