Oval Definition:oval:com.ubuntu.xenial:def:201728180000000
Revision Date:2017-07-12Version:1
Title:CVE-2017-2818 on Ubuntu 16.04 LTS (xenial) - medium.
Description:An exploitable heap overflow vulnerability exists in the image rendering functionality of Poppler 0.53.0. A specifically crafted PDF can cause an overly large number of color components during image rendering, resulting in heap corruption. An attacker controlled PDF file can be used to trigger this vulnerability.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-2818
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT gir1.2-poppler-0.18 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT libpoppler-cpp0 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT libpoppler-glib8 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT libpoppler-qt4-4 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT libpoppler-qt5-1 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT libpoppler58 package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • OR NOT poppler-utils package in xenial, while related to the CVE in some way, is not affected (note: 'uses system libjpeg').
  • BACK