Rapid7

vulnerability

SUSE: CVE-2018-20551: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Dec 28, 2018
Added
Dec 2, 2021
Modified
Dec 2, 2021

Description

A reachable Object::getString assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to construction of invalid rich media annotation assets in the AnnotRichMedia class in Annot.c.

Solutions

suse-upgrade-libpoppler-cpp0suse-upgrade-libpoppler-develsuse-upgrade-libpoppler-glib-develsuse-upgrade-libpoppler-glib8suse-upgrade-libpoppler73suse-upgrade-libpoppler73-32bitsuse-upgrade-poppler-toolssuse-upgrade-typelib-1_0-poppler-0_18
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.