CVE-2015-8868

Heap-based buffer overflow in the ExponentialFunction::ExponentialFunction function in Poppler before 0.40.0 allows remote attackers to cause a denial of service (memory corruption and crash) or possibly execute arbitrary code via an invalid blend mode in the ExtGState dictionary in a crafted PDF document.

Date published : 2016-05-06

http://www.securityfocus.com/bid/89324

https://bugs.freedesktop.org/show_bug.cgi?id=93476