Advisories ยป MGASA-2023-0262

Updated poppler packages fix security vulnerability

Publication date: 11 Sep 2023
Modification date: 11 Sep 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2020-36023 , CVE-2020-36024

Description

An issue was discovered in freedesktop poppler version 20.12.1, allows
remote attackers to cause a denial of service (DoS) via crafted .pdf file
to FoFiType1C::cvtGlyph function. (CVE-2020-36023)

An issue was discovered in freedesktop poppler version 20.12.1, allows
remote attackers to cause a denial of service (DoS) via crafted .pdf file
to FoFiType1C::convertToType1 function. (CVE-2020-36024)
                

References

SRPMS

8/core