Poppler Use After Free Vulnerability
Published Jul 2, 2025
5.5
MEDIUMCVSS 4.0
EPSS 0.45%
Description
Poppler is a PDF rendering library. Versions prior to 25.06.0 use `std::atomic_int` for reference counting. Because `std::atomic_int` is only 32 bits, it is possible to overflow the reference count and trigger a use-after-free. Version 25.06.0 patches the issue.
Affected products
-
- Version < 25.06.0StatusaffectedConstraints-
- Version
- < 25.06.0
No data.
Red Hat Enterprise Linux 10
poppler
Fix deferred
Red Hat Enterprise Linux 10
poppler-data
Fix deferred
Red Hat Enterprise Linux 6
poppler
Fix deferred
Red Hat Enterprise Linux 6
poppler-data
Fix deferred
Red Hat Enterprise Linux 7
compat-poppler022
Fix deferred
Red Hat Enterprise Linux 7
poppler
Fix deferred
Red Hat Enterprise Linux 7
poppler-data
Fix deferred
Red Hat Enterprise Linux 8
poppler
Fix deferred
Red Hat Enterprise Linux 8
poppler-data
Fix deferred
Red Hat Enterprise Linux 9
poppler
Fix deferred
Red Hat Enterprise Linux 9
poppler-data
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | poppler | Fix deferred | n/a |
| Red Hat Enterprise Linux 10 | poppler-data | Fix deferred | n/a |
| Red Hat Enterprise Linux 6 | poppler | Fix deferred | n/a |
| Red Hat Enterprise Linux 6 | poppler-data | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | compat-poppler022 | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | poppler | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | poppler-data | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | poppler | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | poppler-data | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | poppler | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | poppler-data | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (12)
- http://www.openwall.com/lists/oss-security/2025/07/11/5
- http://www.openwall.com/lists/oss-security/2025/07/12/1
- https://access.redhat.com/security/cve/CVE-2025-52886 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2375930 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-19742 Advisory
- https://gitlab.freedesktop.org/poppler/poppler/-/commit/04bd91684ed41d67ae0f10cde0660e4ed74ac203 x_refsource_MISCPatch
- https://gitlab.freedesktop.org/poppler/poppler/-/commit/ac36affcc8486de38e8905a8d6547a3464ff46e5 x_refsource_MISCPatch
- https://gitlab.freedesktop.org/poppler/poppler/-/issues/1581 x_refsource_MISCExploitIssue TrackingVendor Advisory
- https://gitlab.freedesktop.org/poppler/poppler/-/merge_requests/1828 x_refsource_MISCProduct
- https://nvd.nist.gov/vuln/detail/CVE-2025-52886
- https://securitylab.github.com/advisories/GHSL-2025-054_poppler/ x_refsource_CONFIRMExploitThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2025-52886
| Link | Providers | Tags |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2025/07/11/5 | ||
| http://www.openwall.com/lists/oss-security/2025/07/12/1 | ||
| https://access.redhat.com/security/cve/CVE-2025-52886 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2375930 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-19742 | Advisory | |
| https://gitlab.freedesktop.org/poppler/poppler/-/commit/04bd91684ed41d67ae0f10cde0660e4ed74ac203 | x_refsource_MISCPatch | |
| https://gitlab.freedesktop.org/poppler/poppler/-/commit/ac36affcc8486de38e8905a8d6547a3464ff46e5 | x_refsource_MISCPatch | |
| https://gitlab.freedesktop.org/poppler/poppler/-/issues/1581 | x_refsource_MISCExploitIssue TrackingVendor Advisory | |
| https://gitlab.freedesktop.org/poppler/poppler/-/merge_requests/1828 | x_refsource_MISCProduct | |
| https://nvd.nist.gov/vuln/detail/CVE-2025-52886 | ||
| https://securitylab.github.com/advisories/GHSL-2025-054_poppler/ | x_refsource_CONFIRMExploitThird Party Advisory | |
| https://www.cve.org/CVERecord?id=CVE-2025-52886 |
Change history (0)
No recorded changes yet.