#VU16829 Reachable Assertion in Poppler - CVE-2018-20650
Published: January 7, 2019 / Updated: February 1, 2023
Poppler
Freedesktop.org
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a reachable assertion due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach. A remote attacker can cause a denial of service.