Medium severity6.2NVD Advisory· Published Apr 29, 2026· Updated May 5, 2026
CVE-2018-25306
CVE-2018-25306
Description
PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files during merge operations. Attackers can trigger a segmentation fault in the XRef::getEntry function within libpoppler by providing a specially crafted PDF file to the pdfunite utility.
Affected products
1- cpe:2.3:a:canonical:pdfunite:0.41.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.exploit-db.com/exploits/44490nvdExploitVDB Entry
- www.vulncheck.com/advisories/pdfunite-buffer-overflow-via-malformed-pdfnvdThird Party Advisory
- launchpad.net/ubuntu/+source/poppler/0.57.0-2ubuntu4.2nvdProduct
- launchpad.net/ubuntu/artful/+package/poppler-utilsnvdProduct
News mentions
0No linked articles in our index yet.