Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Algillera

Pesquisador deSalesforce.com
#18764de 53,633
14.3CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2017-19179
6.5
2017-06-22
Poppler · Poppler · CVE-2017-9775
**Name of the Vulnerable Software and Affected Versions** Poppler versions prior to 0.56 **Description** The issue is related to a stack buffer overflow in GfxState.cc in pdftocairo, which can be triggered by a crafted PDF document, leading to a denial of service (application crash). **Recommendations** For versions prior to 0.56, update to version 0.56 or later to resolve the issue.
PT-2017-19180
7.8
2017-06-22
Poppler · Poppler · CVE-2017-9776
**Name of the Vulnerable Software and Affected Versions** Poppler versions prior to 0.56 **Description** The issue is related to an integer overflow that leads to a heap buffer overflow in the JBIG2Stream.cc file within the pdftocairo component of Poppler. This can be triggered by remote attackers using a crafted PDF document, potentially causing a denial of service (application crash) or other unspecified impacts. **Recommendations** For versions prior to 0.56, update to version 0.56 or later to resolve the issue. As a temporary workaround, consider restricting the handling of PDF documents from untrusted sources until the update is applied.