File _patchinfo of Package patchinfo.30684
<patchinfo incident="30684">
<issue tracker="bnc" id="1214257">VUL-0: CVE-2020-36024: poppler: NULL Pointer Deference in`FoFiType1C:convertToType1`</issue>
<issue tracker="bnc" id="1214618">VUL-0: CVE-2022-38349: poppler: reachable assertion in Object.h, will lead to denial of service because PDFDoc:replacePageDict in PDFDoc.cc lacks a stream</issue>
<issue tracker="bnc" id="1214621">VUL-0: CVE-2022-37051: poppler: abort in main() in pdfunite.cc</issue>
<issue tracker="bnc" id="1214622">VUL-0: CVE-2022-37050: poppler: denial-of-service via savePageAs in PDFDoc.c</issue>
<issue tracker="bnc" id="1215422">VUL-0: CVE-2020-23804: poppler: uncontrolled recursion inpdfinfo and pdftops</issue>
<issue tracker="cve" id="2020-23804"/>
<issue tracker="cve" id="2020-36024"/>
<issue tracker="cve" id="2022-37050"/>
<issue tracker="cve" id="2022-37051"/>
<issue tracker="cve" id="2022-38349"/>
<packager>pgajdos</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for poppler</summary>
<description>This update for poppler fixes the following issues:
- CVE-2020-23804: Fixed uncontrolled recursion in pdfinfo and pdftops (bsc#1215422).
- CVE-2020-36024: Fixed NULL Pointer Deference in `FoFiType1C:convertToType1` (bsc#1214257).
- CVE-2022-37050: Fixed denial-of-service via savePageAs in PDFDoc.c (bsc#1214622).
- CVE-2022-37051: Fixed abort in main() in pdfunite.cc (bsc#1214621).
- CVE-2022-38349: Fixed reachable assertion in Object.h that will lead to denial of service (bsc#1214618).
</description>
</patchinfo>