Vulnerabilities > CVE-2020-36023 - Infinite Loop vulnerability in Freedesktop Poppler 20.12.1

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
freedesktop
CWE-835

Summary

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::cvtGlyph function.

Vulnerable Configurations

Part Description Count
Application
Freedesktop
1