Oval Definition:oval:com.redhat.rhsa:def:20172551
Revision Date:2017-08-30Version:637
Title:RHSA-2017:2551: poppler security update (Moderate)
Description:Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.

Security Fix(es):

  • A stack-based buffer overflow was found in the poppler library. An attacker could create a malicious PDF file that would cause applications that use poppler (such as Evince) to crash, or potentially execute arbitrary code when opened. (CVE-2017-9775)

  • An integer overflow leading to heap-based buffer overflow was found in the poppler library. An attacker could create a malicious PDF file that would cause applications that use poppler (such as Evince) to crash, or potentially execute arbitrary code when opened. (CVE-2017-9776)
  • Family:unixClass:patch
    Status:Reference(s):CVE-2017-9775
    CVE-2017-9776
    RHSA-2017:2551
    RHSA-2017:2551-00
    RHSA-2017:2551-01
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • poppler is earlier than 0:0.26.5-17.el7_4
  • AND poppler is signed with Red Hat redhatrelease2 key
  • poppler-cpp is earlier than 0:0.26.5-17.el7_4
  • AND poppler-cpp is signed with Red Hat redhatrelease2 key
  • poppler-cpp-devel is earlier than 0:0.26.5-17.el7_4
  • AND poppler-cpp-devel is signed with Red Hat redhatrelease2 key
  • poppler-demos is earlier than 0:0.26.5-17.el7_4
  • AND poppler-demos is signed with Red Hat redhatrelease2 key
  • poppler-devel is earlier than 0:0.26.5-17.el7_4
  • AND poppler-devel is signed with Red Hat redhatrelease2 key
  • poppler-glib is earlier than 0:0.26.5-17.el7_4
  • AND poppler-glib is signed with Red Hat redhatrelease2 key
  • poppler-glib-devel is earlier than 0:0.26.5-17.el7_4
  • AND poppler-glib-devel is signed with Red Hat redhatrelease2 key
  • poppler-qt is earlier than 0:0.26.5-17.el7_4
  • AND poppler-qt is signed with Red Hat redhatrelease2 key
  • poppler-qt-devel is earlier than 0:0.26.5-17.el7_4
  • AND poppler-qt-devel is signed with Red Hat redhatrelease2 key
  • poppler-utils is earlier than 0:0.26.5-17.el7_4
  • AND poppler-utils is signed with Red Hat redhatrelease2 key
  • BACK