Freedesktop

Poppler

97 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.89%
  • Veröffentlicht 22.08.2023 19:16:19
  • Zuletzt bearbeitet 21.11.2024 05:14:05

Uncontrolled Recursion in pdfinfo, and pdftops in poppler 0.89.0 allows remote attackers to cause a denial of service via crafted input.

Exploit
  • EPSS 0.58%
  • Veröffentlicht 22.08.2023 19:15:56
  • Zuletzt bearbeitet 21.11.2024 05:08:49

Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 0.75.0 allows attackers to cause a denial of service.

Exploit
  • EPSS 1.17%
  • Veröffentlicht 11.08.2023 14:15:11
  • Zuletzt bearbeitet 03.11.2025 20:15:45

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::cvtGlyph function.

Exploit
  • EPSS 0.53%
  • Veröffentlicht 11.08.2023 14:15:11
  • Zuletzt bearbeitet 03.11.2025 20:15:45

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::convertToType1 function.

Exploit
  • EPSS 0.9%
  • Veröffentlicht 31.07.2023 14:15:10
  • Zuletzt bearbeitet 04.11.2025 20:16:32

A vulnerability in Outline.cc for Poppler prior to 23.06.0 allows a remote attacker to cause a Denial of Service (DoS) (crash) via a crafted PDF file in OutlineItem::open.

Exploit
  • EPSS 0.59%
  • Veröffentlicht 30.08.2022 03:15:07
  • Zuletzt bearbeitet 21.11.2024 07:17:04

Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIGStream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary c...

  • EPSS 0.34%
  • Veröffentlicht 22.08.2022 19:15:11
  • Zuletzt bearbeitet 21.11.2024 07:15:56

Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This i...

Exploit
  • EPSS 1.6%
  • Veröffentlicht 05.05.2022 19:15:07
  • Zuletzt bearbeitet 21.11.2024 06:55:36

A logic error in the Hints::Hints function of Poppler v22.03.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.

Warnung
  • EPSS 75.99%
  • Veröffentlicht 24.08.2021 19:15:14
  • Zuletzt bearbeitet 27.10.2025 17:38:22

An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2021-005 Catalina, iOS 14.8 and iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2. Processing a maliciously crafted PDF may lead to arbitrary code e...

Exploit
  • EPSS 0.86%
  • Veröffentlicht 25.12.2020 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:27:52

DCTStream::getChars in DCTStream.cc in Poppler 20.12.1 has a heap-based buffer overflow via a crafted PDF document. NOTE: later reports indicate that this only affects builds from Poppler git clones in late December 2020, not the 20.12.1 release. In ...