CVE-2026-107705

Public on 2026-10-08
Modified on 2026-10-10
Description
Poppler 0.42.0 through 26.10.0 contains a stack-based buffer overflow in Decrypt::revision6Hash() that allows attackers controlling the password to overwrite stack memory when opening AESV3/R6 encrypted PDFs. Attackers can supply a password longer than 127 bytes through applications using the libpoppler, libpoppler-glib or C++ API to overflow the K1 and E buffers, crashing the process or corrupting memory.
Severity
Medium severity
Medium
See what this means
CVSS v3 Base Score
6.8
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
Amazon Linux 2 - Core compat-poppler022 Not Affected
Amazon Linux 2023 compat-poppler22 Pending Fix
Amazon Linux 2027 Preview compat-poppler22 Pending Fix
Amazon Linux 2 - Core glib2 Not Affected
Amazon Linux 2023 glib2 Not Affected
Amazon Linux 2027 Preview glib2 Not Affected
Amazon Linux 2 - Core poppler Not Affected
Amazon Linux 2023 poppler Pending Fix
Amazon Linux 2027 Preview poppler Pending Fix
Amazon Linux 2 - Core poppler-data Not Affected
Amazon Linux 2023 poppler-data Not Affected
Amazon Linux 2027 Preview poppler-data Not Affected

CVSS Scores

Score Type Score Vector
Amazon Linux CVSSv3 6.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H