USN-7213-1: poppler vulnerability
16 January 2025
poppler could be made to crash or expose sensitive information if it opened a specially crafted file.
Releases
Packages
- poppler - PDF rendering library
Details
It was discovered that poppler incorrectly handled memory when opening
certain PDF files. An attacker could possibly use this issue to cause
denial of service or obtain sensitive information.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.10
Ubuntu 24.04
Ubuntu 22.04
Ubuntu 20.04
Ubuntu 18.04
-
libpoppler73
-
0.62.0-2ubuntu2.14+esm4
Available with Ubuntu Pro
-
poppler-utils
-
0.62.0-2ubuntu2.14+esm4
Available with Ubuntu Pro
Ubuntu 16.04
-
libpoppler58
-
0.41.0-0ubuntu1.16+esm5
Available with Ubuntu Pro
-
poppler-utils
-
0.41.0-0ubuntu1.16+esm5
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.