Vulnerability Database
Blog
FAQ
Docs
RHSA-2020:1074
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2020:1074
Import Source
https://security.access.redhat.com/data/osv/RHSA-2020:1074.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2020:1074
Related
CVE-2018-21009
CVE-2019-10871
CVE-2019-11459
CVE-2019-12293
CVE-2019-9959
Published
2024-09-16T02:49:45Z
Modified
2024-11-22T13:38:54Z
Severity
6.6 (Medium)
CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: poppler and evince security update
Details
References
https://access.redhat.com/errata/RHSA-2020:1074
https://access.redhat.com/security/updates/classification/#moderate
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.8_release_notes/index
https://bugzilla.redhat.com/show_bug.cgi?id=1696636
https://bugzilla.redhat.com/show_bug.cgi?id=1713582
https://bugzilla.redhat.com/show_bug.cgi?id=1716295
https://bugzilla.redhat.com/show_bug.cgi?id=1732340
https://bugzilla.redhat.com/show_bug.cgi?id=1753850
https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_1074.json
https://access.redhat.com/security/cve/CVE-2018-21009
https://www.cve.org/CVERecord?id=CVE-2018-21009
https://nvd.nist.gov/vuln/detail/CVE-2018-21009
https://access.redhat.com/security/cve/CVE-2019-9959
https://www.cve.org/CVERecord?id=CVE-2019-9959
https://nvd.nist.gov/vuln/detail/CVE-2019-9959
https://access.redhat.com/security/cve/CVE-2019-10871
https://www.cve.org/CVERecord?id=CVE-2019-10871
https://nvd.nist.gov/vuln/detail/CVE-2019-10871
https://access.redhat.com/security/cve/CVE-2019-11459
https://www.cve.org/CVERecord?id=CVE-2019-11459
https://nvd.nist.gov/vuln/detail/CVE-2019-11459
https://access.redhat.com/security/cve/CVE-2019-12293
https://www.cve.org/CVERecord?id=CVE-2019-12293
https://nvd.nist.gov/vuln/detail/CVE-2019-12293
Affected packages
Red Hat:enterprise_linux:7::client
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::client
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::client
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::server
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::server
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-9.el7
Red Hat:enterprise_linux:7::workstation
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-42.el7
RHSA-2020:1074 - OSV