An issue was discovered in Poppler 0.71.0. There is a memory leak in GfxColorSpace::setDisplayProfile in GfxState.cc, as demonstrated by pdftocairo.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
https://gitlab.freedesktop.org/poppler/poppler/issues/654 | third party advisory exploit |
https://usn.ubuntu.com/4042-1/ | third party advisory vendor advisory |
https://access.redhat.com/errata/RHSA-2019:2022 | third party advisory vendor advisory |
https://access.redhat.com/errata/RHSA-2019:2713 | third party advisory vendor advisory |
https://lists.debian.org/debian-lts-announce/2022/09/msg00030.html | third party advisory mailing list |