Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 29 Sep 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Freedesktop Poppler up to 26.08.0. Affected is the function SplashClip::clipToPath of the file splash/SplashClip.cc. Such manipulation leads to integer overflow. The attack can only be performed from a local environment. The exploit is publicly available and might be used. Upgrading to version 26.09.0 is able to address this issue. The name of the patch is 323c91036d99926a8b90dc14329f7b40aece22f8. It is recommended to upgrade the affected component. | |
| Title | Freedesktop Poppler SplashClip.cc clipToPath integer overflow | |
| First Time appeared |
Freedesktop
Freedesktop poppler |
|
| Weaknesses | CWE-189 CWE-190 |
|
| CPEs | cpe:2.3:a:freedesktop:poppler:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Freedesktop
Freedesktop poppler |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-29T21:30:11.612Z
Reserved: 2026-09-29T14:30:20.158Z
Link: CVE-2026-102621
No data.
No data.
No data.
OpenCVE Enrichment
No data.