8.8
CVSSv3

CVE-2017-1000456

Published: 02/01/2018 Updated: 30/04/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

freedesktop.org libpoppler 0.60.1 fails to validate boundaries in TextPool::addWord, leading to overflow in subsequent calculations.

Vulnerable Product Search on Vulmon Subscribe to Product

freedesktop poppler 0.60.1

debian debian linux 7.0

debian debian linux 8.0

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in poppler ...
freedesktoporg libpoppler 0601 fails to validate boundaries in TextPool::addWord, leading to overflow in subsequent calculations ...