Buffer Overflow Vulnerability in Poppler by Freedesktop
CVE-2020-18839

6.5MEDIUM

Key Information:

Status
Vendor
CVE Published:
22 August 2023

What is CVE-2020-18839?

A buffer overflow vulnerability exists in the HtmlOutputDev::page function of Poppler 0.75.0, allowing attackers to potentially exploit this weakness to trigger a denial of service condition. By manipulating inputs to the affected function, malicious actors may execute specially crafted content that could lead to unexpected behavior or crashes of applications relying on Poppler for PDF rendering.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-18839 : Buffer Overflow Vulnerability in Poppler by Freedesktop