Oval Definition:oval:com.ubuntu.xenial:def:201995870000000
Revision Date:2019-03-06Version:1
Title:CVE-2019-9587 on Ubuntu 16.04 LTS (xenial) - negligible.
Description:There is a stack consumption issue in md5Round1() located in Decrypt.cc in Xpdf 4.01. It can be triggered by sending a crafted pdf file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact. This is related to Catalog::countPageTree.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-9587
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • poppler package in xenial, is related to the CVE in some way and has been fixed (note: '0.41.0-0ubuntu1.13').
  • OR texlive-bin package in xenial is affected, but a decision has been made to defer addressing it (note: '2019-07-23').
  • OR xpdf package in xenial is affected and may need fixing.
  • BACK