CVE-2009-3607

Integer overflow in the create_surface_from_thumbnail_data function in glib/poppler-page.cc in Poppler 0.x allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

Date published : 2009-10-21

http://www.securityfocus.com/bid/36718

http://cgit.freedesktop.org/poppler/poppler/commit/?id=c839b706