A flaw was found in Poppler in the way certain PDF files were converted into HTML. A remote attacker could exploit this flaw by providing a malicious PDF file that, when processed by the 'pdftohtml' program, would crash the application causing a denial of service.
The product accesses or uses a pointer that has not been initialized.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1900712 | issue tracking patch exploit third party advisory |
https://lists.debian.org/debian-lts-announce/2022/09/msg00030.html | third party advisory mailing list |