Vulnerabilities > CVE-2020-27778 - Access of Uninitialized Pointer vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
freedesktop
redhat
debian
CWE-824

Summary

A flaw was found in Poppler in the way certain PDF files were converted into HTML. A remote attacker could exploit this flaw by providing a malicious PDF file that, when processed by the 'pdftohtml' program, would crash the application causing a denial of service.

Vulnerable Configurations

Part Description Count
Application
Freedesktop
189
OS
Redhat
1
OS
Debian
1

Common Weakness Enumeration (CWE)