CVE Vulnerabilities

CVE-2017-7511

NULL Pointer Dereference

Published: May 30, 2017 | Modified: Jan 18, 2018
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

poppler since version 0.17.3 has been vulnerable to NULL pointer dereference in pdfunite triggered by specially crafted documents.

Weakness

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Affected Software

Name Vendor Start Version End Version
Poppler Freedesktop 0.17.3 (including) 0.17.3 (including)
Poppler Freedesktop 0.17.4 (including) 0.17.4 (including)
Poppler Freedesktop 0.18.0 (including) 0.18.0 (including)
Poppler Freedesktop 0.18.1 (including) 0.18.1 (including)
Poppler Freedesktop 0.18.2 (including) 0.18.2 (including)
Poppler Freedesktop 0.18.3 (including) 0.18.3 (including)
Poppler Freedesktop 0.18.4 (including) 0.18.4 (including)
Poppler Freedesktop 0.19.0 (including) 0.19.0 (including)
Poppler Freedesktop 0.19.1 (including) 0.19.1 (including)
Poppler Freedesktop 0.19.2 (including) 0.19.2 (including)
Poppler Freedesktop 0.19.3 (including) 0.19.3 (including)
Poppler Freedesktop 0.19.4 (including) 0.19.4 (including)
Poppler Freedesktop 0.20.0 (including) 0.20.0 (including)
Poppler Freedesktop 0.20.1 (including) 0.20.1 (including)
Poppler Freedesktop 0.20.2 (including) 0.20.2 (including)
Poppler Freedesktop 0.20.3 (including) 0.20.3 (including)
Poppler Freedesktop 0.20.4 (including) 0.20.4 (including)
Poppler Freedesktop 0.20.5 (including) 0.20.5 (including)
Poppler Freedesktop 0.21.0 (including) 0.21.0 (including)
Poppler Freedesktop 0.21.1 (including) 0.21.1 (including)
Poppler Freedesktop 0.21.2 (including) 0.21.2 (including)
Poppler Freedesktop 0.21.3 (including) 0.21.3 (including)
Poppler Freedesktop 0.21.4 (including) 0.21.4 (including)
Poppler Freedesktop 0.22.0 (including) 0.22.0 (including)
Poppler Freedesktop 0.22.1 (including) 0.22.1 (including)
Poppler Freedesktop 0.22.2 (including) 0.22.2 (including)
Poppler Freedesktop 0.22.3 (including) 0.22.3 (including)
Poppler Freedesktop 0.22.4 (including) 0.22.4 (including)
Poppler Freedesktop 0.22.5 (including) 0.22.5 (including)
Poppler Freedesktop 0.23.0 (including) 0.23.0 (including)
Poppler Freedesktop 0.23.1 (including) 0.23.1 (including)
Poppler Freedesktop 0.23.2 (including) 0.23.2 (including)
Poppler Freedesktop 0.23.3 (including) 0.23.3 (including)
Poppler Freedesktop 0.23.4 (including) 0.23.4 (including)
Poppler Freedesktop 0.24.0 (including) 0.24.0 (including)
Poppler Freedesktop 0.24.1 (including) 0.24.1 (including)
Poppler Freedesktop 0.24.2 (including) 0.24.2 (including)
Poppler Freedesktop 0.24.3 (including) 0.24.3 (including)
Poppler Freedesktop 0.24.4 (including) 0.24.4 (including)
Poppler Freedesktop 0.24.5 (including) 0.24.5 (including)
Poppler Freedesktop 0.25.0 (including) 0.25.0 (including)
Poppler Freedesktop 0.25.1 (including) 0.25.1 (including)
Poppler Freedesktop 0.25.2 (including) 0.25.2 (including)
Poppler Freedesktop 0.25.3 (including) 0.25.3 (including)
Poppler Freedesktop 0.26.0 (including) 0.26.0 (including)
Poppler Freedesktop 0.26.1 (including) 0.26.1 (including)
Poppler Freedesktop 0.26.2 (including) 0.26.2 (including)
Poppler Freedesktop 0.26.3 (including) 0.26.3 (including)
Poppler Freedesktop 0.26.4 (including) 0.26.4 (including)
Poppler Freedesktop 0.26.5 (including) 0.26.5 (including)
Poppler Freedesktop 0.28.0 (including) 0.28.0 (including)
Poppler Freedesktop 0.28.1 (including) 0.28.1 (including)
Poppler Freedesktop 0.29.0 (including) 0.29.0 (including)
Poppler Freedesktop 0.30.0 (including) 0.30.0 (including)
Poppler Freedesktop 0.31.0 (including) 0.31.0 (including)
Poppler Freedesktop 0.32.0 (including) 0.32.0 (including)
Poppler Freedesktop 0.33.0 (including) 0.33.0 (including)
Poppler Freedesktop 0.34.0 (including) 0.34.0 (including)
Poppler Freedesktop 0.35.0 (including) 0.35.0 (including)
Poppler Freedesktop 0.36.0 (including) 0.36.0 (including)
Poppler Freedesktop 0.37.0 (including) 0.37.0 (including)
Poppler Freedesktop 0.38.0 (including) 0.38.0 (including)
Poppler Freedesktop 0.39.0 (including) 0.39.0 (including)
Poppler Freedesktop 0.40.0 (including) 0.40.0 (including)
Poppler Freedesktop 0.41.0 (including) 0.41.0 (including)
Poppler Freedesktop 0.42.0 (including) 0.42.0 (including)
Poppler Freedesktop 0.43.0 (including) 0.43.0 (including)
Poppler Freedesktop 0.44.0 (including) 0.44.0 (including)
Poppler Freedesktop 0.45.0 (including) 0.45.0 (including)
Poppler Freedesktop 0.46.0 (including) 0.46.0 (including)
Poppler Freedesktop 0.47.0 (including) 0.47.0 (including)
Poppler Freedesktop 0.48.0 (including) 0.48.0 (including)
Poppler Freedesktop 0.49.0 (including) 0.49.0 (including)
Poppler Freedesktop 0.50.0 (including) 0.50.0 (including)
Poppler Freedesktop 0.51.0 (including) 0.51.0 (including)
Poppler Freedesktop 0.52.0 (including) 0.52.0 (including)
Poppler Freedesktop 0.53.0 (including) 0.53.0 (including)
Poppler Freedesktop 0.54.0 (including) 0.54.0 (including)
Poppler Freedesktop 0.55.0 (including) 0.55.0 (including)

Potential Mitigations

References