Lucene search

K
osvGoogleOSV:CVE-2018-20662
HistoryJan 03, 2019 - 1:29 p.m.

CVE-2018-20662

2019-01-0313:29:00
Google
osv.dev
8

6.5 Medium

AI Score

Confidence

Low

0.012 Low

EPSS

Percentile

85.5%

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

References