Oval Definition:oval:com.ubuntu.disco:def:201995870000000
Revision Date:2019-03-06Version:1
Title:CVE-2019-9587 on Ubuntu 19.04 (disco) - negligible.
Description:There is a stack consumption issue in md5Round1() located in Decrypt.cc in Xpdf 4.01. It can be triggered by sending a crafted pdf file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact. This is related to Catalog::countPageTree.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-9587
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND Package Information
  • poppler package in disco, is related to the CVE in some way and has been fixed (note: '0.74.0-0ubuntu1.1').
  • OR texlive-bin package in disco is affected, but a decision has been made to defer addressing it (note: '2019-07-23').
  • OR xpdf package in disco is affected and may need fixing.
  • BACK