INFSA-2024:9167: poppler security update

Information about definition

Identificator: INFSA-2024:9167

Type: security

Release date: 2024-12-13 12:07:40 UTC

Information about package

Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.

Vulnerabilities description

  • CVE-2024-6239

    A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
NIST — CVE-2024-6239
no information 7.5 no information
Critical, important, moderate, low

Updated packages