PT-2017-13506 · Poppler+2 · Poppler+2

Ziqiang Gu

·

Publicado

2017-09-17

·

Atualizado

2018-06-16

·

CVE-2017-14520

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Poppler version 0.59.0
Description A floating point exception occurs in the Splash::scaleImageYuXd() function when handling malicious PDF files, potentially leading to a security issue.
Recommendations For Poppler version 0.59.0, update to a newer version that contains a fix for this issue to prevent potential attacks when handling malicious PDF files.

Exploit

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-14520
DSA-4079-1
MGASA-2017-0360
OPENSUSE-SU-2018_1721-1
SUSE-SU-2017:2952-1
SUSE-SU-2018:1662-1
USN-3440-1

Produtos afetados

Poppler
Suse
Ubuntu