Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
poppler could be made to crash if it opened a specially crafted PDF.
Software Description:
- poppler: PDF rendering library
Details:
It was discovered that poppler incorrectly handled certain PDF files.
An attacker could possibly use this to cause a denial of service.
(CVE-2017-18267)
It was discovered that poppler incorrectly handled certain PDF files.
An attacker could possibly use this to cause a denial of service. This
issue only affected Ubuntu 14.04 LTS. (CVE-2018-10768)
The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: libpoppler73 0.62.0-2ubuntu2.1 poppler-utils 0.62.0-2ubuntu2.1 Ubuntu 17.10: libpoppler68 0.57.0-2ubuntu4.3 poppler-utils 0.57.0-2ubuntu4.3 Ubuntu 16.04 LTS: libpoppler58 0.41.0-0ubuntu1.7 poppler-utils 0.41.0-0ubuntu1.7 Ubuntu 14.04 LTS: libpoppler44 0.24.5-2ubuntu4.11 poppler-utils 0.24.5-2ubuntu4.11 In general, a standard system update will make all the necessary changes.
CVE-2017-18267, CVE-2018-10768
Get the latest Linux and open source security news straight to your inbox.