drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mehrere Probleme in poppler
Name: |
Mehrere Probleme in poppler |
|
ID: |
USN-4646-1 |
|
Distribution: |
Ubuntu |
|
Plattformen: |
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS |
|
Datum: |
Do, 26. November 2020, 08:02 |
|
Referenzen: |
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10871
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13283
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9959
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27778
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-21009 |
|
Applikationen: |
poppler |
|
Originalnachricht |
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --===============8006965963260567788== Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="JsjreESZit0GhWxXDgQcqeWYDi7hYrun8"
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --JsjreESZit0GhWxXDgQcqeWYDi7hYrun8 Content-Type: multipart/mixed; boundary="m381n0KHz10D2H14zS5o43VLSthTLR6Pk"; protected-headers="v1" From: Marc Deslauriers <marc.deslauriers@canonical.com> To: "ubuntu-security-announce@lists.ubuntu.com" <ubuntu-security-announce@lists.ubuntu.com> Message-ID: <f153e851-8878-6036-ab4b-fad485e87e0f@canonical.com> Subject: [USN-4646-1] poppler vulnerabilities
--m381n0KHz10D2H14zS5o43VLSthTLR6Pk Content-Type: text/plain; charset=utf-8 Content-Language: en-C Content-Transfer-Encoding: quoted-printable
========================================================================== Ubuntu Security Notice USN-4646-1 November 25, 2020
poppler vulnerabilities ==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 18.04 LTS - Ubuntu 16.04 LTS
Summary:
Several security issues were fixed in poppler.
Software Description: - poppler: PDF rendering library
Details:
It was discovered that Poppler incorrectly handled certain files. If a user or automated system were tricked into opening a crafted PDF file, an attacker could cause a denial of service.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
Ubuntu 18.04 LTS: libpoppler73 0.62.0-2ubuntu2.11 poppler-utils 0.62.0-2ubuntu2.11
Ubuntu 16.04 LTS: libpoppler58 0.41.0-0ubuntu1.15 poppler-utils 0.41.0-0ubuntu1.15
In general, a standard system update will make all the necessary changes.
References: https://usn.ubuntu.com/4646-1 CVE-2018-21009, CVE-2019-10871, CVE-2019-13283, CVE-2019-9959, CVE-2020-27778
Package Information: https://launchpad.net/ubuntu/+source/poppler/0.62.0-2ubuntu2.11 https://launchpad.net/ubuntu/+source/poppler/0.41.0-0ubuntu1.15
--m381n0KHz10D2H14zS5o43VLSthTLR6Pk--
--JsjreESZit0GhWxXDgQcqeWYDi7hYrun8 Content-Type: application/pgp-signature; name="OpenPGP_signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="OpenPGP_signature"
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEUMSg3c8x5FLOsZtRZWnYVadEvpMFAl++qRMACgkQZWnYVadE vpNE/w//UQIbcjKPUxdJRFsfP3HNwYaQCJBxDhLvyoLeGZNAJNh5gluOogOYXETQ j9ATn/4+aIIZ6p1H7PGlzh09nMSlhNmSlV7oyPad4z7/M5Bj77R1HP417wzwLBEd X5EMIDzy5NRzzgflSf0ccfScawl31/6Kft8kfCa9DGEHk/o05B4CdYfSqZr2c8do /K4TPsIdGIst12xC+ujrOcHZhoL/O4YGkqyurHAeF1osWvTm5Nohd8kB2AQph/+Y 1qhM1vRAz+5ZH/5YeBRJRiw4jhBCLfDnU7xXzB2cyzOvuA+ON49/SIglwb0NTkzd mn1jH3d8hq3CZr6Bh9OYyqhHIsOutgG2NS1Bj0SqyeETvHomUjU8GqwBIdt0z5aO YtoplTNCqNX6oO8Arzm3pAoDC6Bb+BGA7nyY/evKY1kw9TNvczOWZmh5jedGXExw kQ4W1ZBwaNZudC76rnWJYJZXRy5QkIgmm/a9PlfhNLmiGfzMQ5kdsiWrbVH2RuLn kgluWcOACYgRfTtftdvgeFKOGv0zrX9BC6ExxI+eC1m1l0U5+s+0e4yb0mJlKSDt lnk24JV55XyLyvLU2DTVryygz9qdm9mu0t7h8oN9ChjtEi8eiLftwmE928m/HZAp 4nKcprBEzbIQ83dyHeK0Eh6ZgZ9HK/OdVmsc5r7pHtlVkxhfE7M= =mhI9 -----END PGP SIGNATURE-----
--JsjreESZit0GhWxXDgQcqeWYDi7hYrun8--
--===============8006965963260567788== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline
LS0gCnVidW50dS1zZWN1cml0eS1hbm5vdW5jZSBtYWlsaW5nIGxpc3QKdWJ1bnR1LXNlY3VyaXR5 LWFubm91bmNlQGxpc3RzLnVidW50dS5jb20KTW9kaWZ5IHNldHRpbmdzIG9yIHVuc3Vic2NyaWJl IGF0OiBodHRwczovL2xpc3RzLnVidW50dS5jb20vbWFpbG1hbi9saXN0aW5mby91YnVudHUtc2Vj dXJpdHktYW5ub3VuY2UK
--===============8006965963260567788==--
|
|
|
|