Severity
6.5MEDIUM
EPSS
0.2%
top 60.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 22

Description

Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 0.75.0 allows attackers to cause a denial of service.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

Debianpoppler< 0.85.0-2+3

🔴Vulnerability Details

3
OSV
CVE-2020-18839: Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 02023-08-22
CVEList
CVE-2020-18839: Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 02023-08-22
GHSA
GHSA-9qxr-688p-9w44: Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 02023-08-22

📋Vendor Advisories

2
Debian
CVE-2020-18839: poppler - Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 0.75.0 allows at...2020
Red Hat
poppler: buffer overflow in HtmlOutputDev::page2019-03-22
CVE-2020-18839 (MEDIUM CVSS 6.5) | Buffer Overflow vulnerability in Ht | cvebase.io