Vulnerability Database
Blog
FAQ
Docs
RHSA-2020:3977
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2020:3977
Import Source
https://security.access.redhat.com/data/osv/RHSA-2020:3977.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2020:3977
Related
CVE-2019-14494
Published
2024-09-16T04:00:50Z
Modified
2024-11-22T14:54:22Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: evince and poppler security and bug fix update
Details
References
https://access.redhat.com/errata/RHSA-2020:3977
https://access.redhat.com/security/updates/classification/#low
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.9_release_notes/index
https://bugzilla.redhat.com/show_bug.cgi?id=1610436
https://bugzilla.redhat.com/show_bug.cgi?id=1797453
https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_3977.json
https://access.redhat.com/security/cve/CVE-2019-14494
https://www.cve.org/CVERecord?id=CVE-2019-14494
https://nvd.nist.gov/vuln/detail/CVE-2019-14494
Affected packages
Red Hat:enterprise_linux:7::client
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::client
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::client
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::computenode
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::server
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::server
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
evince
Package
Name
evince
Purl
pkg:rpm/redhat/evince
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-browser-plugin
Package
Name
evince-browser-plugin
Purl
pkg:rpm/redhat/evince-browser-plugin
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-debuginfo
Package
Name
evince-debuginfo
Purl
pkg:rpm/redhat/evince-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-devel
Package
Name
evince-devel
Purl
pkg:rpm/redhat/evince-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-dvi
Package
Name
evince-dvi
Purl
pkg:rpm/redhat/evince-dvi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-libs
Package
Name
evince-libs
Purl
pkg:rpm/redhat/evince-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
evince-nautilus
Package
Name
evince-nautilus
Purl
pkg:rpm/redhat/evince-nautilus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.28.2-10.el7
Red Hat:enterprise_linux:7::workstation
/
poppler
Package
Name
poppler
Purl
pkg:rpm/redhat/poppler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-cpp
Package
Name
poppler-cpp
Purl
pkg:rpm/redhat/poppler-cpp
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-cpp-devel
Package
Name
poppler-cpp-devel
Purl
pkg:rpm/redhat/poppler-cpp-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-debuginfo
Package
Name
poppler-debuginfo
Purl
pkg:rpm/redhat/poppler-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-demos
Package
Name
poppler-demos
Purl
pkg:rpm/redhat/poppler-demos
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-devel
Package
Name
poppler-devel
Purl
pkg:rpm/redhat/poppler-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-glib
Package
Name
poppler-glib
Purl
pkg:rpm/redhat/poppler-glib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-glib-devel
Package
Name
poppler-glib-devel
Purl
pkg:rpm/redhat/poppler-glib-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-qt
Package
Name
poppler-qt
Purl
pkg:rpm/redhat/poppler-qt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-qt-devel
Package
Name
poppler-qt-devel
Purl
pkg:rpm/redhat/poppler-qt-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
Red Hat:enterprise_linux:7::workstation
/
poppler-utils
Package
Name
poppler-utils
Purl
pkg:rpm/redhat/poppler-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.26.5-43.el7
RHSA-2020:3977 - OSV