VYPR

rpm package

suse/poppler&distro=SUSE Linux Enterprise Real Time 15 SP3

pkg:rpm/suse/poppler&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP3

Vulnerabilities (2)

  • CVE-2022-38784Aug 30, 2022
    affected < 0.79.0-150200.3.8.1fixed 0.79.0-150200.3.8.1

    Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIGStream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vu

  • CVE-2022-27337May 5, 2022
    affected < 0.79.0-150200.3.11.1fixed 0.79.0-150200.3.11.1

    A logic error in the Hints::Hints function of Poppler v22.03.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.