Heap-Based Buffer Over-Read in Poppler Product
CVE-2019-7310
7.8HIGH
Key Information:
- Vendor
Freedesktop
- Status
- Vendor
- CVE Published:
- 3 February 2019
What is CVE-2019-7310?
A vulnerability in the Poppler library version 0.73.0 allows remote attackers to exploit a heap-based buffer over-read, caused by an integer signedness error in the XRef::getEntry function. This flaw can lead to denial of service through application crashes when processing specially crafted PDF documents, potentially affecting system stability and availability.