ECHO-7ebf-d455-2fa5

See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-7ebf-d455-2fa5.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-7ebf-d455-2fa5
Upstream
Withdrawn
2025-12-09T15:30:04Z
Published
2025-09-15T01:08:42Z
Modified
2026-09-15T03:33:35Z
Summary
CVE-2013-4472 only affects non-Unix systems (Windows, OpenVMS, old MacOS) due to insecure temporary file handling in platform-specific code paths. Debian Linux uses the secure Unix code path with mkstemp(), making this CVE not applicable. https://security-tracker.debian.org/tracker/CVE-2013-4472
Details
References

Affected packages

Echo / poppler

Package

Name
poppler
Purl
pkg:deb/echo/poppler

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
25.03.0-5+deb13u2+e1

Database specific

source
"https://advisory.echohq.com/osv/ECHO-7ebf-d455-2fa5.json"