Mageia 2018-0498: poppler security update
Summary
Poppler before 0.70.0 has a NULL pointer dereference in
_poppler_attachment_new when called from
poppler_annot_file_attachment_get_attachment. (CVE-2018-19149)
References
- https://bugs.mageia.org/show_bug.cgi?id=24073
- https://ubuntu.com/security/notices/USN-3837-2
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19149
Resolution
MGASA-2018-0498 - Updated poppler packages fix security vulnerability
SRPMS
- 6/core/poppler-0.52.0-3.10.mga6