Metrics
Affected Vendors & Products
Sun, 10 Aug 2025 01:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in freedesktop poppler v25.04.0. The heap memory containing PDF stream objects is not cleared upon program exit, allowing attackers to obtain sensitive PDF content via a memory dump. | Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c. |
Weaknesses | CWE-617 | |
References |
| |
Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 05 Aug 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 05 Aug 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Freedesktop
Freedesktop poppler |
|
Vendors & Products |
Freedesktop
Freedesktop poppler |
Tue, 05 Aug 2025 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | poppler: Poppler crash on malformed input | |
Weaknesses | CWE-476 | |
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Mon, 04 Aug 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-244 | |
Metrics |
cvssV3_1
|
Mon, 04 Aug 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in freedesktop poppler v25.04.0. The heap memory containing PDF stream objects is not cleared upon program exit, allowing attackers to obtain sensitive PDF content via a memory dump. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-10T00:59:19.048Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50422

Updated: 2025-08-04T19:35:23.215Z

Status : Awaiting Analysis
Published: 2025-08-04T17:15:30.813
Modified: 2025-08-10T02:15:26.620
Link: CVE-2025-50422
