vulnerability
Amazon Linux AMI: CVE-2017-9776: Security patch for poppler (ALAS-2017-902)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Jun 22, 2017 | Sep 30, 2017 | Feb 2, 2018 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Jun 22, 2017
Added
Sep 30, 2017
Modified
Feb 2, 2018
Description
Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.
Solution
amazon-linux-upgrade-poppler
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.