Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2026-81

JLSEC-2026-81

JLSEC Published
Modified
Affected Packages
Poppler_jll < 23.12.0+0
Aliases / Upstream
CVE-2022-38784

Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIGStream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2022-38171 in Xpdf.

References