header-logo
Suggest Exploit
vendor:
Poppler
by:
SecurityFocus
7.5
CVSS
HIGH
Denial-of-Service
400
CWE
Product Name: Poppler
Affected Version From: Prior to Poppler 0.10.4
Affected Version To: Prior to Poppler 0.10.4
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009

Poppler Denial-of-Service Vulnerabilities

Poppler is prone to multiple denial-of-service vulnerabilities when handling malformed PDF files. Successfully exploiting this issue allows remote attackers to crash applications that use the vulnerable library, denying service to legitimate users.

Mitigation:

Upgrade to Poppler 0.10.4 or later.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/33749/info

Poppler is prone to multiple denial-of-service vulnerabilities when handling malformed PDF files.

Successfully exploiting this issue allows remote attackers to crash applications that use the vulnerable library, denying service to legitimate users.

These issues affect versions prior to Poppler 0.10.4.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/32800.pdf