Bug#877222: poppler: CVE-2017-14929
carnil at debian.org
Fri Sep 29 17:25:12 UTC 2017
Tags: patch security upstream
the following vulnerability was published for poppler.
| In Poppler 0.59.0, memory corruption occurs in a call to
| Object::dictLookup() in Object.h after a repeating series of
| Gfx::display, Gfx::go, Gfx::execOp, Gfx::opFill, Gfx::doPatternFill,
| Gfx::doTilingPatternFill and Gfx::drawForm calls (aka a Gfx.cc infinite
| loop), a different vulnerability than CVE-2017-14519.
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.
For further information see:
Please adjust the affected versions in the BTS as needed.
More information about the Pkg-freedesktop-maintainers