LWN.net Logo

poppler: denial of service

Package(s):poppler CVE #(s):CVE-2009-0755 CVE-2009-0756
Created:March 6, 2009 Updated:December 1, 2009
Description: From the Mandriva advisory: A crafted PDF file that triggers a parsing error allows remote attackers to cause denial of service. This bug is consequence of a wrong processing on FormWidgetChoice::loadDefaults method (CVE-2009-0755). A crafted PDF file that triggers a parsing error allows remote attackers to cause denial of service. This bug is consequence of an invalid memory dereference on JBIG2SymbolDict::~JBIG2SymbolDict destructor when JBIG2Stream::readSymbolDictSeg method is used (CVE-2009-0756).
Alerts:
Ubuntu USN-850-1 2009-10-21
SuSE SUSE-SR:2009:012 2009-07-03
Debian DSA-1941-1 2009-11-25
rPath rPSA-2009-0059-1 2009-04-17
Mandriva MDVSA-2009:068-1 2009-03-07
Mandriva MDVSA-2009:068 2008-03-06

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds