CVE-2025-43718: stack consumption & crash
Bug #2126687 reported by
Jeremy Bícha
This bug affects 1 person
| Affects | Status | Importance | Assigned to | Milestone | |
|---|---|---|---|---|---|
| poppler (Debian) |
Fix Released
|
Unknown
|
|||
| poppler (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Bug Description
This is a one-line security fix I'd like to get into questing before release.
I'm not handling updates for any previous Ubuntu releases for this issue.
https:/
CVE References
| Changed in poppler (Debian): | |
| status: | Unknown → Fix Released |
| Changed in poppler (Ubuntu): | |
| status: | In Progress → Fix Committed |
To post a comment you must log in.

This bug was fixed in the package poppler - 25.03.0-10
---------------
poppler (25.03.0-10) unstable; urgency=high
* SECURITY UPDATE: stack consumption & crash patches/ CVE-2025- 43718.patch: make sure regex doesn't
- debian/
stack overflow by limiting it in poppler/PDFDoc.cc
- CVE-2025-4718 (Closes: #1117046) (LP: #2126687)
-- Jeremy Bícha <email address hidden> Thu, 02 Oct 2025 15:58:16 -0400