ZeroHour

CVE-2019-9959

CVSS 3.1
6.5 medium
EPSS
2%p79
Published
()
Modified
Description

The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.

Vendors
freedesktopdebianfedoraprojectredhat
Products
poppler, debian linux, fedora, enterprise linux, enterprise linux eus, enterprise linux server aus, enterprise linux server tus
Weakness
CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.