Format: 1.8 Date: Fri, 30 Nov 2018 13:07:28 -0300 Source: poppler Binary: libpoppler44 libpoppler-dev libpoppler-private-dev libpoppler-glib8 libpoppler-glib-dev libpoppler-glib-doc gir1.2-poppler-0.18 libpoppler-qt4-4 libpoppler-qt4-dev libpoppler-qt5-1 libpoppler-qt5-dev libpoppler-cpp0 libpoppler-cpp-dev poppler-utils poppler-dbg Architecture: amd64 Version: 0.24.5-2ubuntu4.13 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: gir1.2-poppler-0.18 - GObject introspection data for poppler-glib libpoppler-cpp-dev - PDF rendering library -- development files (CPP interface) libpoppler-cpp0 - PDF rendering library (CPP shared library) libpoppler-dev - PDF rendering library -- development files libpoppler-glib-dev - PDF rendering library -- development files (GLib interface) libpoppler-glib-doc - PDF rendering library -- documentation for the GLib interface libpoppler-glib8 - PDF rendering library (GLib-based shared library) libpoppler-private-dev - PDF rendering library -- private development files libpoppler-qt4-4 - PDF rendering library (Qt 4 based shared library) libpoppler-qt4-dev - PDF rendering library -- development files (Qt 4 interface) libpoppler-qt5-1 - PDF rendering library (Qt 5 based shared library) libpoppler-qt5-dev - PDF rendering library -- development files (Qt 5 interface) libpoppler44 - PDF rendering library poppler-dbg - PDF rendering library -- debugging symbols poppler-utils - PDF utilities (based on Poppler) Changes: poppler (0.24.5-2ubuntu4.13) trusty-security; urgency=medium . * SECURITY UPDATE: Denial of service - debian/patches/CVE-2018-19149.patch: "check whether and embedded file is actually present in the PDF and show warning in that case" in glib/poppler-attachment.cc, glib/poppler-document.cc. - CVE-2018-19149 [ Marc Deslauriers ] * SECURITY UPDATE: infinite recursion via crafted file - debian/patches/CVE-2018-16646.patch: avoid cycles in PDF parsing in poppler/Parser.cc, poppler/XRef.h. - CVE-2018-16646 * SECURITY UPDATE: denial of service via reachable abort - debian/patches/CVE-2018-19058.patch: check for stream before calling stream methods when saving an embedded file in poppler/FileSpec.cc. - CVE-2018-19058 * SECURITY UPDATE: denial of service via out-of-bounds read - debian/patches/CVE-2018-19059.patch: check for valid embedded file before trying to save it in utils/pdfdetach.cc. - CVE-2018-19059 * SECURITY UPDATE: denial of service via NULL pointer dereference - debian/patches/CVE-2018-19060.patch: check for valid file name of embedded file in utils/pdfdetach.cc. - CVE-2018-19060 Checksums-Sha1: 7fbc9a227f64830cb3fd2284c750984b0b189f9d 703824 libpoppler44_0.24.5-2ubuntu4.13_amd64.deb 1ca281584000b18d775e9ae8de319a7924e2a1da 706582 libpoppler-dev_0.24.5-2ubuntu4.13_amd64.deb fb6669bde8b2a08d0f9745924d8aec9945fab9e6 158340 libpoppler-private-dev_0.24.5-2ubuntu4.13_amd64.deb f541bb5fc129c86268d6382ee4d32bd71d793c4d 83986 libpoppler-glib8_0.24.5-2ubuntu4.13_amd64.deb 7a2991b80b8d39f3f1c00852ee26ee91e9a8b97b 114038 libpoppler-glib-dev_0.24.5-2ubuntu4.13_amd64.deb f2dc89ffd93d6c6da8d0d234eb90d976d91626bf 13826 gir1.2-poppler-0.18_0.24.5-2ubuntu4.13_amd64.deb fdea5017b918c65b8a378ab4fcca774db36c0280 106854 libpoppler-qt4-4_0.24.5-2ubuntu4.13_amd64.deb 6cd949d889013609cf3f41bebf21616f5a7885b5 137214 libpoppler-qt4-dev_0.24.5-2ubuntu4.13_amd64.deb 21358d3c75d5c30eac7bcfc8e76641c98840e8d0 109934 libpoppler-qt5-1_0.24.5-2ubuntu4.13_amd64.deb ab9240ff174ebc9176a53b95c794eccdf0005110 142916 libpoppler-qt5-dev_0.24.5-2ubuntu4.13_amd64.deb 4e8332d4cc6e5b01888924687088b67d3ba3e358 28440 libpoppler-cpp0_0.24.5-2ubuntu4.13_amd64.deb 7402401670cee52f2ffa9b7721da93a5e8e461a5 33244 libpoppler-cpp-dev_0.24.5-2ubuntu4.13_amd64.deb 233c6365a5f5892627d66398cbcec118ee3bc531 118434 poppler-utils_0.24.5-2ubuntu4.13_amd64.deb ab10bb1cf13f29fb4ca42d14f31ff90213ea5d0d 7383836 poppler-dbg_0.24.5-2ubuntu4.13_amd64.deb 7dba7cd672a1b2ec36b0b790935f7904071c99ea 864 libpoppler44-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 3f302bd3955ba7e2d1edf6c805c95acb920ddd11 880 libpoppler-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 103bd8c8af3f8ee9972b1e67175ab984e50efabe 900 libpoppler-private-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb fc44a1291daf63dab6f625a3dc5794bf66f4f4ce 898 libpoppler-glib8-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 739da8cfbcebd3c13f85a8809cfe36e05baaa96c 904 libpoppler-glib-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 0031240de13055a6856d1045d143b01db4faf8e9 920 gir1.2-poppler-0.18-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 28c08037af6b369e7eac5e4e58512fdac214cd8b 896 libpoppler-qt4-4-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 4d209729fe6b8243925eb704e1d458e082f39e9d 906 libpoppler-qt4-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 651a0a99848db0f0dc77f15464bad18c40103488 896 libpoppler-qt5-1-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 469fb7544b3f6f338a0902815a86f93b448e2871 904 libpoppler-qt5-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 2c1c7cde6558f954f15290a56dcd2fcd21cf4de1 922 libpoppler-cpp0-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb f2110336de4f8e8c42618a7b9138d4171f27e949 900 libpoppler-cpp-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb ccf82ad0b0417db701080d57321f373b0745e170 1120 poppler-utils-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb Checksums-Sha256: 696813d8f58d4f6f5e57bb7a178109b811c4b56408082ad987689a2bc2fe5f19 703824 libpoppler44_0.24.5-2ubuntu4.13_amd64.deb eebc4360d66a25afbba06b0739d2ad97c2e422d514eecd71abf1fdc0b9cebf35 706582 libpoppler-dev_0.24.5-2ubuntu4.13_amd64.deb 7d9e4aaea85559e22cd9f3eba3e87a42ff06524ace8902678f6c87fbf943c5fb 158340 libpoppler-private-dev_0.24.5-2ubuntu4.13_amd64.deb 92e919daad78c1f5615c5fdc4a32a2dde31796ec1841ef067b85406132b9d65f 83986 libpoppler-glib8_0.24.5-2ubuntu4.13_amd64.deb 62ca2c1010f2926fa84fc9261dc890d246e6b094cfbe83446d936695214d760c 114038 libpoppler-glib-dev_0.24.5-2ubuntu4.13_amd64.deb 4d9481a1a9d2a860063615e9e596cba07a538c6e8f8481bb9ea495a8eaa9dcf1 13826 gir1.2-poppler-0.18_0.24.5-2ubuntu4.13_amd64.deb 9c5102105e09eb06a5638786b8f54b74d41d6387ececcad6cbd7ff975ca28f96 106854 libpoppler-qt4-4_0.24.5-2ubuntu4.13_amd64.deb 87a4bb35ce8435453c40a1259cdee2c606ed617692fd4cb8967f44290efc0197 137214 libpoppler-qt4-dev_0.24.5-2ubuntu4.13_amd64.deb af6b17ee6fd164d441bd2c0ed2a48d834176b83d0e080c03bacd8cbc191502f5 109934 libpoppler-qt5-1_0.24.5-2ubuntu4.13_amd64.deb f2a25cdbcecc3c32e8e145029efbef2d4dfaa1315546727ddaeb57cb7ce9a45f 142916 libpoppler-qt5-dev_0.24.5-2ubuntu4.13_amd64.deb 4b3ec4b3c60833f8b6ff16e9c028cc89cd046964153744a015b1e6055d8363bf 28440 libpoppler-cpp0_0.24.5-2ubuntu4.13_amd64.deb af5821582071347487c57ad798d1cae38396fef2ebe1079fab3b673f0c6604b0 33244 libpoppler-cpp-dev_0.24.5-2ubuntu4.13_amd64.deb 24bd3ffc75ea74f2e9e9745e9e6f34e9ce82b6a5fa72271dca505512d27fc919 118434 poppler-utils_0.24.5-2ubuntu4.13_amd64.deb d1ff3596cc01052ad1715de792efe277f1914e443d190543da4a16e899182935 7383836 poppler-dbg_0.24.5-2ubuntu4.13_amd64.deb c3ae6df1981cca6d4dc933bb47092a513596e2582febc27f08a243ea540ee62d 864 libpoppler44-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 817353b552513036f9758145c49c139cf0802a4dc276462e65876f7dd94665f5 880 libpoppler-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 11fdefb6d86311c0ffb2e26515e8afe6f0f629676892aadbb38b302e9ec83798 900 libpoppler-private-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 20798936b3fafaf4b2cc3549d1a2e559c8e26a50c08c81b552fb5b4a31df1b71 898 libpoppler-glib8-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 42e74ceb02f07b0d3d7f8176bcd33a51a4be7f8989a120abf624b5d1a8c04067 904 libpoppler-glib-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 74efa2ebe2249de1d729fc128efce0184d030de1114ce04c090bf5c5758bda3d 920 gir1.2-poppler-0.18-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb edce72957771d8561b834349fe96019e4b2679446c47c48b14db51ff92c650d0 896 libpoppler-qt4-4-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 25442768815cffb4afa48c99e5ef501c1508de1da3eedc223f69c36fc354be9c 906 libpoppler-qt4-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 9c278c83a56dc174e1da28da20823fb46bf5be6b1e6ff898dc5a4aa0ed60a5b6 896 libpoppler-qt5-1-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 5abdb910b5bc053165b1a3a4fee8c71aee13e20d627c625513453ccc6cee3a84 904 libpoppler-qt5-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 8f65e29818e6245e7460f4509dbc3dc6eb3811d919b2bbea6488edd95d3108d4 922 libpoppler-cpp0-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 1aa868b79aaff6ec7e13982a45bf2cc853e33a2fe433ca85703cf6ff0c9bbbc4 900 libpoppler-cpp-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 56d5d0a753956722178ec0332bc3df74d37f71e0b44a5ad4fec4caaa9baa9333 1120 poppler-utils-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb Files: a858ae445d455e4df0f7c26829c2080c 703824 libs optional libpoppler44_0.24.5-2ubuntu4.13_amd64.deb 9b9ea0a5403174f756b7d3cd903a5d19 706582 libdevel optional libpoppler-dev_0.24.5-2ubuntu4.13_amd64.deb 01974a67ac72ed9a1165f0ef991411da 158340 libdevel optional libpoppler-private-dev_0.24.5-2ubuntu4.13_amd64.deb d8df59c41babc729b64409be142e6795 83986 libs optional libpoppler-glib8_0.24.5-2ubuntu4.13_amd64.deb 8db29d33acc28821c95cfc5d657bd227 114038 libdevel optional libpoppler-glib-dev_0.24.5-2ubuntu4.13_amd64.deb 1da858d64e5b0f99b3f0c6f3d06a6ca2 13826 introspection optional gir1.2-poppler-0.18_0.24.5-2ubuntu4.13_amd64.deb 3492d66ee99648999d862c1334844d57 106854 libs optional libpoppler-qt4-4_0.24.5-2ubuntu4.13_amd64.deb b5c0bcf564e48545e148e3357ea14746 137214 libdevel optional libpoppler-qt4-dev_0.24.5-2ubuntu4.13_amd64.deb dcf4ce58c2d633192b611b472a124fc8 109934 libs optional libpoppler-qt5-1_0.24.5-2ubuntu4.13_amd64.deb 6038b21d649656da31ebba5fa8c07579 142916 libdevel optional libpoppler-qt5-dev_0.24.5-2ubuntu4.13_amd64.deb 72110c30324fd813bf7b29a5aafca66a 28440 libs optional libpoppler-cpp0_0.24.5-2ubuntu4.13_amd64.deb c08c87a518cafa0e996a6fc39686f75a 33244 libdevel optional libpoppler-cpp-dev_0.24.5-2ubuntu4.13_amd64.deb 1239c0041d385dbe56936416ed84cc50 118434 utils optional poppler-utils_0.24.5-2ubuntu4.13_amd64.deb 60b671206cdc99b96d5e1d6b58b50fd8 7383836 debug extra poppler-dbg_0.24.5-2ubuntu4.13_amd64.deb 43a64b5b3f9eb5cf49b29e4eaac57200 864 libs extra libpoppler44-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb ad9dcd6a145864428bdecc6526c79944 880 libdevel extra libpoppler-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb b9028ecdc0157afd6d0b70846c1d5e08 900 libdevel extra libpoppler-private-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb fe9e6bfddbb73574ca78798d3c5288dc 898 libs extra libpoppler-glib8-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb a067af16c8bfdfbb8d07db962435977a 904 libdevel extra libpoppler-glib-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 42e8f03fdd153bbd91f73414993d1619 920 introspection extra gir1.2-poppler-0.18-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 0f448d5ee9707e39b2721ea370d35756 896 libs extra libpoppler-qt4-4-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 2e454861a4f0e1acde7cccb0ce1d923c 906 libdevel extra libpoppler-qt4-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 96dc311a29d141c42b685a53e9ba26af 896 libs extra libpoppler-qt5-1-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 274f458de74dfdb8e9575ea5baa29ff5 904 libdevel extra libpoppler-qt5-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb c5ae8d36355ddecf966077130bc5c51f 922 libs extra libpoppler-cpp0-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb 8571fbcce0e279d760255cb92d22b886 900 libdevel extra libpoppler-cpp-dev-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb e7c3a3ffa1e0e2495fddc9d4c7ab9379 1120 utils extra poppler-utils-dbgsym_0.24.5-2ubuntu4.13_amd64.ddeb Original-Maintainer: Loic Minier