ELA-689-1 poppler security update

denial of service

2022-09-29
Packagepoppler
Version0.26.5-2+deb8u15 (jessie), 0.48.0-2+deb9u5 (stretch)
Related CVEs CVE-2018-13988 CVE-2018-18897 CVE-2019-10873 CVE-2020-27778 CVE-2022-27337 CVE-2022-38784


Several security vulnerabilities have been discovered in Poppler, a PDF rendering library, that could lead to denial of service or possibly other unspecified impact when processing maliciously crafted documents.



For Debian 8 jessie, these problems have been fixed in version 0.26.5-2+deb8u15.

For Debian 9 stretch, these problems have been fixed in version 0.48.0-2+deb9u5.

We recommend that you upgrade your poppler packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.