CVE-2017-14519 PUBLISHED

In Poppler 0.59.0, memory corruption occurs in a call to Object::streamGetChar in Object.h after a repeating series of Gfx::display, Gfx::go, Gfx::execOp, Gfx::opShowText, and Gfx::doShowText calls (aka a Gfx.cc infinite loop).

EPSS 0.44% · 62.7th percentile

Risk Scores

EPSS Score
0.44%
62.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSpoppler0, 0.33.0-0ubuntu3, 0.37.0-0ubuntu1
Ubuntu:14.04:LTSpoppler0.24.3-0ubuntu6, 0.24.3-0ubuntu7, 0.24.3-0ubuntu8

Timeline

References

Open in Interactive Console →