vulnerability

Amazon Linux AMI: CVE-2017-9776: Security patch for poppler (ALAS-2017-902)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Jun 22, 2017
Added
Sep 30, 2017
Modified
Feb 2, 2018

Description

Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.

Solution

amazon-linux-upgrade-poppler
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.