PT-2026-95214 · Freedesktop · Poppler
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Freedesktop Poppler version 26.07.0
Description
A remote attack can trigger an integer overflow in the
JBIG2Stream::readCodeTableSeg() function within the poppler/JBIG2Stream.cc file. An integer overflow occurs when an arithmetic operation results in a value that exceeds the maximum size of the integer type used to store it.Recommendations
Deploy patch eb87cf711563894649bd0c365baa479401dc6d51 for version 26.07.0.
Exploit
Fix
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Poppler