Format: 1.8 Date: Fri, 30 Nov 2018 14:36:01 -0300 Source: poppler Binary: libpoppler73 libpoppler-dev libpoppler-private-dev libpoppler-glib8 libpoppler-glib-dev libpoppler-glib-doc gir1.2-poppler-0.18 libpoppler-qt5-1 libpoppler-qt5-dev libpoppler-cpp0v5 libpoppler-cpp-dev poppler-utils Architecture: amd64 all Version: 0.62.0-2ubuntu2.4 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: gir1.2-poppler-0.18 - GObject introspection data for poppler-glib libpoppler-cpp-dev - PDF rendering library -- development files (CPP interface) libpoppler-cpp0v5 - PDF rendering library (CPP shared library) libpoppler-dev - PDF rendering library -- development files libpoppler-glib-dev - PDF rendering library -- development files (GLib interface) libpoppler-glib-doc - PDF rendering library -- documentation for the GLib interface libpoppler-glib8 - PDF rendering library (GLib-based shared library) libpoppler-private-dev - PDF rendering library -- private development files libpoppler-qt5-1 - PDF rendering library (Qt 5 based shared library) libpoppler-qt5-dev - PDF rendering library -- development files (Qt 5 interface) libpoppler73 - PDF rendering library poppler-utils - PDF utilities (based on Poppler) Changes: poppler (0.62.0-2ubuntu2.4) bionic-security; urgency=medium . [ Marc Deslauriers ] * SECURITY UPDATE: infinite recursion via crafted file - debian/patches/CVE-2018-16646.patch: avoid cycles in PDF parsing in poppler/Parser.cc, poppler/XRef.h. - CVE-2018-16646 * SECURITY UPDATE: denial of service via reachable abort - debian/patches/CVE-2018-19058.patch: check for stream before calling stream methods when saving an embedded file in poppler/FileSpec.cc. - CVE-2018-19058 * SECURITY UPDATE: denial of service via out-of-bounds read - debian/patches/CVE-2018-19059.patch: check for valid embedded file before trying to save it in utils/pdfdetach.cc. - CVE-2018-19059 * SECURITY UPDATE: denial of service via NULL pointer dereference - debian/patches/CVE-2018-19060.patch: check for valid file name of embedded file in utils/pdfdetach.cc. - CVE-2018-19060 Checksums-Sha1: 1f3b4d03986c4e3b9e8f20a2a135d30befc5321a 18492 gir1.2-poppler-0.18_0.62.0-2ubuntu2.4_amd64.deb 6b9158751142055253e6abb3faf250c1de84a845 8676 libpoppler-cpp-dev_0.62.0-2ubuntu2.4_amd64.deb 437de0e8bba4e912a4ff354513618cc03c8106a4 451572 libpoppler-cpp0v5-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb eb50acaec495ff21c7121511cc73e8d00f558414 27980 libpoppler-cpp0v5_0.62.0-2ubuntu2.4_amd64.deb 961932cbcb9d40bad4097840019de22adcb27fc6 4612 libpoppler-dev_0.62.0-2ubuntu2.4_amd64.deb a66bb6ccc8a36fa825424ea943818be7d9f5cfb6 47688 libpoppler-glib-dev_0.62.0-2ubuntu2.4_amd64.deb 6e60fddbc2744e5847304dfb69a3f50e93e365bb 72148 libpoppler-glib-doc_0.62.0-2ubuntu2.4_all.deb bd8078b2359a6865ba98fb5123ed548cdb038a02 855032 libpoppler-glib8-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 9169417fc67da149fb0d12296b901abaae8a79a1 108036 libpoppler-glib8_0.62.0-2ubuntu2.4_amd64.deb cb360f81050239a2d511098757c3b284d64bfca3 169240 libpoppler-private-dev_0.62.0-2ubuntu2.4_amd64.deb cbcd3b20f642ce2b231b3a28b313fedbbc75a1dc 2846076 libpoppler-qt5-1-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 35f826077a91308e8835ba88f78a4e1399d0318a 140212 libpoppler-qt5-1_0.62.0-2ubuntu2.4_amd64.deb 7564facf2c32d7d4b17ebafdaf048973ae43150b 32248 libpoppler-qt5-dev_0.62.0-2ubuntu2.4_amd64.deb e880b2b623cd1b578b54a0de0422edf2e462f2d5 2971504 libpoppler73-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 1098193959984ddc6f49815434501b9b164f12f2 799732 libpoppler73_0.62.0-2ubuntu2.4_amd64.deb d764db92bc3e39682fdc53477107135e2fdf7766 1132360 poppler-utils-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 654d34a728fbb62112fe052404812bd227f71998 153784 poppler-utils_0.62.0-2ubuntu2.4_amd64.deb 386620ab0fcde8d14530837ebaa65fcfbb3bd5ef 19101 poppler_0.62.0-2ubuntu2.4_amd64.buildinfo Checksums-Sha256: 0406365d11c23a690a5b4e32710713a13420670a12412497039b4a4a7696c499 18492 gir1.2-poppler-0.18_0.62.0-2ubuntu2.4_amd64.deb b4901b8471b44d72e492dd75f8e7257678d57f5471c3113faa9ab9a786c219bb 8676 libpoppler-cpp-dev_0.62.0-2ubuntu2.4_amd64.deb ea51c20e47051bd1a7b7c9ac65380812ebf117a9a89e3af77fc92059c0aa455a 451572 libpoppler-cpp0v5-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 36a011543cb825f144bd228b3aef2036670f1608e6285cecee06a92692ef9de8 27980 libpoppler-cpp0v5_0.62.0-2ubuntu2.4_amd64.deb e45e1e1f80cca7c58f71f0854e9ebd5d73c9202ebe0dc6896e9a2724126a0517 4612 libpoppler-dev_0.62.0-2ubuntu2.4_amd64.deb 2bb17fa0d2587fcc8cdc85ab258a44565cc2a4cd65ae084c50ac075016b5d617 47688 libpoppler-glib-dev_0.62.0-2ubuntu2.4_amd64.deb 2c8785b33d5c3e58ea419b46ea2dbb1fa66bfb6db3c472623810196a2d21b1a5 72148 libpoppler-glib-doc_0.62.0-2ubuntu2.4_all.deb 25cf00e3bf91ccc6468f752355a67bf1cbf63642113ce18d5fd6173601f746f1 855032 libpoppler-glib8-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb f4fb000a2e759f657e1f9b5d5105e368c9cfa07d0ab6505ae1dcb9d54047a2ec 108036 libpoppler-glib8_0.62.0-2ubuntu2.4_amd64.deb 44274b7beeddb701038c293a7b90d9b3b45a863aa8dcd816ab2cd67f9e10b1e9 169240 libpoppler-private-dev_0.62.0-2ubuntu2.4_amd64.deb afd9b5e914c986ec81c3df4ab250b144f22ff2f71fc84adcc807b336024fe788 2846076 libpoppler-qt5-1-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb a506744cf2a925f3185900f05a1f90b14754ec58d009077b934c775e1961f39d 140212 libpoppler-qt5-1_0.62.0-2ubuntu2.4_amd64.deb ea720411c47c07d8886c5767aad2bfd086e44bc14775601b3fd980c455f37ee8 32248 libpoppler-qt5-dev_0.62.0-2ubuntu2.4_amd64.deb d8c4d042e880b4d2bfb666d22c69e9f699116407398225aaa82620dee848ef25 2971504 libpoppler73-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 4275996dc2155d025602bca8f54ea91e4c9967a3cbfc62044757195f3189159b 799732 libpoppler73_0.62.0-2ubuntu2.4_amd64.deb a4c278c4d0238c903e94cf2b229ad4cb641a7385dc874f7c9e39f1084b5b01ec 1132360 poppler-utils-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb ba5ecd9a86a088a9eeea47c30481205f9438e54da74a7d6eee90726a0a17a36b 153784 poppler-utils_0.62.0-2ubuntu2.4_amd64.deb ca55b5f72d582d7f8466637bf045f06061aa97d9af6419cab399e12da645d93b 19101 poppler_0.62.0-2ubuntu2.4_amd64.buildinfo Files: 8202b929e4da186ec9ddfb37aaed1873 18492 introspection optional gir1.2-poppler-0.18_0.62.0-2ubuntu2.4_amd64.deb 5c467c6876548f27cbf97c036650c35f 8676 libdevel optional libpoppler-cpp-dev_0.62.0-2ubuntu2.4_amd64.deb 83cf5f95d63cf7df9ba3c6b925f61928 451572 debug optional libpoppler-cpp0v5-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 539445e0d463260810852f18a5e16247 27980 libs optional libpoppler-cpp0v5_0.62.0-2ubuntu2.4_amd64.deb 13f8a008853c3aad50371cf2944ddf8c 4612 libdevel optional libpoppler-dev_0.62.0-2ubuntu2.4_amd64.deb c33ece23235f6761e7a4727b005d2a14 47688 libdevel optional libpoppler-glib-dev_0.62.0-2ubuntu2.4_amd64.deb 88e4cdbc88899b6d311b20cf5a2ef8d0 72148 doc optional libpoppler-glib-doc_0.62.0-2ubuntu2.4_all.deb 37076b1866cf6c6990beb580fac9b349 855032 debug optional libpoppler-glib8-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 825bb3a035cbe54e6522973b08829dac 108036 libs optional libpoppler-glib8_0.62.0-2ubuntu2.4_amd64.deb affc55c187c60a456b8dde3f8f21ae32 169240 libdevel optional libpoppler-private-dev_0.62.0-2ubuntu2.4_amd64.deb abe163871e64527e5f95c61ff5365b13 2846076 debug optional libpoppler-qt5-1-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb b7413bba882e70dece3fd70105a5cae8 140212 libs optional libpoppler-qt5-1_0.62.0-2ubuntu2.4_amd64.deb f487c61a433897ca0bcb3e1a4f9f5f3d 32248 libdevel optional libpoppler-qt5-dev_0.62.0-2ubuntu2.4_amd64.deb 1a9eb5595d113da20d9f2cd5940ca3fe 2971504 debug optional libpoppler73-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 35aaea93e23104fccb001f5ed84397b1 799732 libs optional libpoppler73_0.62.0-2ubuntu2.4_amd64.deb 359c11ae0048e6e997c0530a548db6b3 1132360 debug optional poppler-utils-dbgsym_0.62.0-2ubuntu2.4_amd64.ddeb 965be21b8bace616a38daa4bfee07b8b 153784 utils optional poppler-utils_0.62.0-2ubuntu2.4_amd64.deb 8260487bc5b74a3ac1444faa163c2012 19101 devel optional poppler_0.62.0-2ubuntu2.4_amd64.buildinfo Original-Maintainer: Debian freedesktop.org maintainers