Oval Definition:oval:com.ubuntu.trusty:def:20172814000
Revision Date:2017-07-12Version:1
Title:CVE-2017-2814 on Ubuntu 14.04 LTS (trusty) - medium.
Description:An exploitable heap overflow vulnerability exists in the image rendering functionality of Poppler 0.53.0. A specifically crafted pdf can cause an image resizing after allocation has already occurred, resulting in heap corruption which can lead to code execution. An attacker controlled PDF file can be used to trigger this vulnerability.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-2814
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND NOT While related to the CVE in some way, the 'poppler' package in trusty is not affected (note: 'uses system libjpeg').
  • BACK