oss-sec mailing list archives

CVE Request : poppler < 0.13.0


From: etienne <etiennehelluy () gmail com>
Date: Wed, 18 Sep 2013 09:53:33 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,
I'd like to request a CVE number for the following issue
http://cgit.freedesktop.org/poppler/poppler/commit/poppler/DCTStream.cc?id=fc071d800cb4329a3ccf898d7bf16b4db7323ad8

The bug has been fixed in poppler 0.13.3, back in 2010, though it is
still present and exploitable in several distributions.

Thanks,

Etienne
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAlI5W/cACgkQCRpgAcXwxOcbEQCgoa8IZSrKjVjEfJRXBBLcNpom
mggAmQGZmKXz/5eYy5JVETtWxVB/rH4Y
=uavz
-----END PGP SIGNATURE-----

Attachment: 0xC5F0C4E7.asc
Description:


Current thread: