yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2025-32364
Component Overview
Vulnerability Overview
Name
CVE-2025-32364
Source
NVD (
link
)
Debian (
link
)
Description
A floating-point exception in the PSStack::roll function of Poppler before 25.04.0 can cause an application to crash when handling malformed inputs associated with INT_MIN.
CWEs
CWE-190
Published Date
Apr 5, 2025
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://gitlab.freedesktop.org/poppler/poppler/-/commit/d87bc726c7cc98f8c26b60ece5f20236e9de1bc3
Patch
https://gitlab.freedesktop.org/poppler/poppler/-/issues/1574
Exploit
Analysis
#
Affected Component
Analysis
poppler
Patched
Vulnerability Ratings
#
4
CVSSv31
5.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
poppler
buildroot
2025.02.x
25.10.0
Not Affected
poppler
buildroot
master
25.10.0
Not Affected
poppler
yocto
kirkstone
22.04.0
Patched
poppler
yocto
master
25.12.0
Not Affected
Resolved with patches
#
poppler (yocto:kirkstone)
#
Title
Author
Resolve
1
PSStack::roll: Protect against doing int = -INT_MIN
Albert Astals Cid <aacid@kde.org>
CVE-2025-32364
poppler (yocto:scarthgap)
#
Title
Author
Resolve
1
PSStack::roll: Protect against doing int = -INT_MIN
Albert Astals Cid <aacid@kde.org>
CVE-2025-32364