在 Freedesktop Poppler 26.07.0 版本中确认存在一个漏洞。该漏洞影响文件 fofi/FoFiTrueType.cc 中的函数 FoFiTrueType::mapCodeToGID。通过操纵参数 segCnt,可导致整数溢出。该攻击可远程发起,且利用方法已公开披露,可能被滥用。该漏洞的修复补丁编号为 ed2a5538cf0a8d3ff908191eda9b73f91a5f952a。建议应用该补丁以修复此问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Freedesktop | Poppler | 26.07.0 |
cpe:2.3:a:freedesktop:poppler:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93313 | 6.3 MEDIUM | Freedesktop Poppler JBIG2Stream.cc readCodeTableSeg integer overflow |
| CVE-2026-93311 | 4.3 MEDIUM | Freedesktop Poppler SampledFunction Function.cc integer overflow |
| CVE-2026-93312 | 4.3 MEDIUM | Freedesktop Poppler JBIG2Stream.cc rewind null pointer dereference |
No comments yet