Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 670920 - <app-text/poppler-0.73.0: Multiple Vulnerabilities (CVE-2018-{18897,19058,19059,19060})
Summary: <app-text/poppler-0.73.0: Multiple Vulnerabilities (CVE-2018-{18897,19058,190...
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B3 [noglsa cve]
Keywords:
Depends on: CVE-2018-20650 poppler-0.73.0
Blocks:
  Show dependency tree
 
Reported: 2018-11-11 15:20 UTC by GLSAMaker/CVETool Bot
Modified: 2019-03-10 04:23 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description GLSAMaker/CVETool Bot gentoo-dev 2018-11-11 15:20:47 UTC
CVE-2018-19060 (https://nvd.nist.gov/vuln/detail/CVE-2018-19060):
  An issue was discovered in Poppler 0.71.0. There is a NULL pointer
  dereference in goo/GooString.h, will lead to denial of service, as
  demonstrated by utils/pdfdetach.cc not validating a filename of an embedded
  file before constructing a save path.

CVE-2018-19059 (https://nvd.nist.gov/vuln/detail/CVE-2018-19059):
  An issue was discovered in Poppler 0.71.0. There is a out-of-bounds read in
  EmbFile::save2 in FileSpec.cc, will lead to denial of service, as
  demonstrated by utils/pdfdetach.cc not validating embedded files before save
  attempts.

CVE-2018-19058 (https://nvd.nist.gov/vuln/detail/CVE-2018-19058):
  An issue was discovered in Poppler 0.71.0. There is a reachable abort in
  Object.h, will lead to denial of service because EmbFile::save2 in
  FileSpec.cc lacks a stream check before saving an embedded file.

CVE-2018-18897 (https://nvd.nist.gov/vuln/detail/CVE-2018-18897):
  An issue was discovered in Poppler 0.71.0. There is a memory leak in
  GfxColorSpace::setDisplayProfile in GfxState.cc, as demonstrated by
  pdftocairo.
Comment 1 Andreas Sturmlechner gentoo-dev 2019-01-17 01:19:36 UTC
CVE-2018-18897 was only fixed in 0.73.0.
Comment 2 Andreas Sturmlechner gentoo-dev 2019-03-03 01:03:43 UTC
Cleanup done.