SUSE-SU-2022:1724-1
Dashboard / Vulnerabilities / SUSE-SU-2022:1724-1
SUSE-SU-2022:1724-1
Summary: Security update for poppler
Details: This update for poppler fixes the following issues: - CVE-2020-27778: Fixed a buffer overflow in pdftohtml (bsc#1179163). - CVE-2019-14494: Fixed a divide-by-zero error in pdftoppm (bsc#1143950). - CVE-2019-9959: Fixed an integer overflow in pdftocairo (bsc#1142465). - CVE-2019-10871: Fixed an invalid memory access in pdftops (bsc#1131696). - CVE-2019-10872: Fixed an invalid memory access in pdftoppm (bsc#1131722). - CVE-2019-9903: Fixed a buffer overflow in pdfunite (bsc#1130229). - CVE-2019-7310: Fixed an application crash in pdftocairo (bsc#1124150). - CVE-2019-9631: Fixed an invalid memory access in pdftocairo (bsc#1129202).
References: https://www.suse.com/support/update/announcement/2022/suse-su-20221724-1/, https://bugzilla.suse.com/1124150, https://bugzilla.suse.com/1129202, https://bugzilla.suse.com/1131696, https://bugzilla.suse.com/1131722, https://bugzilla.suse.com/1142465, https://bugzilla.suse.com/1143950, https://bugzilla.suse.com/1179163, https://www.suse.com/security/cve/CVE-2019-10871, https://www.suse.com/security/cve/CVE-2019-10872, https://www.suse.com/security/cve/CVE-2019-14494, https://www.suse.com/security/cve/CVE-2019-7310, https://www.suse.com/security/cve/CVE-2019-9631, https://www.suse.com/security/cve/CVE-2019-9959, https://www.suse.com/security/cve/CVE-2020-27778
Affected packages
Package
Name: poppler
Purl: pkg:rpm/suse/poppler&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
Affected ranges
Type: ECOSYSTEM
Events:
