Oval Definition:oval:com.redhat.rhsa:def:20211881
Revision Date:2021-05-18Version:636
Title:RHSA-2021:1881: poppler and evince security, bug fix, and enhancement update (Moderate)
Description:Poppler is a Portable Document Format (PDF) rendering library, used by applications such as Evince.

The evince packages provide a simple multi-page document viewer for Portable Document Format (PDF), PostScript (PS), Encapsulated PostScript (EPS) files, and, with additional back-ends, also the Device Independent File format (DVI) files.

  • The following packages have been upgraded to a later upstream version: poppler (20.11.0). (BZ#1644423)

    Security Fix(es):

  • poppler: pdftohtml: access to uninitialized pointer could lead to DoS (CVE-2020-27778)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.4 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2020-27778
    RHSA-2021:1881
    Platform(s):Red Hat Enterprise Linux 8
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 8 is installed
  • OR Red Hat CoreOS 4 is installed
  • AND
  • poppler is earlier than 0:20.11.0-2.el8
  • AND poppler is signed with Red Hat redhatrelease2 key
  • poppler-cpp is earlier than 0:20.11.0-2.el8
  • AND poppler-cpp is signed with Red Hat redhatrelease2 key
  • poppler-cpp-devel is earlier than 0:20.11.0-2.el8
  • AND poppler-cpp-devel is signed with Red Hat redhatrelease2 key
  • poppler-devel is earlier than 0:20.11.0-2.el8
  • AND poppler-devel is signed with Red Hat redhatrelease2 key
  • poppler-glib is earlier than 0:20.11.0-2.el8
  • AND poppler-glib is signed with Red Hat redhatrelease2 key
  • poppler-glib-devel is earlier than 0:20.11.0-2.el8
  • AND poppler-glib-devel is signed with Red Hat redhatrelease2 key
  • poppler-qt5 is earlier than 0:20.11.0-2.el8
  • AND poppler-qt5 is signed with Red Hat redhatrelease2 key
  • poppler-qt5-devel is earlier than 0:20.11.0-2.el8
  • AND poppler-qt5-devel is signed with Red Hat redhatrelease2 key
  • poppler-utils is earlier than 0:20.11.0-2.el8
  • AND poppler-utils is signed with Red Hat redhatrelease2 key
  • evince is earlier than 0:3.28.4-11.el8
  • AND evince is signed with Red Hat redhatrelease2 key
  • evince-browser-plugin is earlier than 0:3.28.4-11.el8
  • AND evince-browser-plugin is signed with Red Hat redhatrelease2 key
  • evince-devel is earlier than 0:3.28.4-11.el8
  • AND evince-devel is signed with Red Hat redhatrelease2 key
  • evince-libs is earlier than 0:3.28.4-11.el8
  • AND evince-libs is signed with Red Hat redhatrelease2 key
  • evince-nautilus is earlier than 0:3.28.4-11.el8
  • AND evince-nautilus is signed with Red Hat redhatrelease2 key
  • BACK