yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2025-50420
Component Overview
Vulnerability Overview
Name
CVE-2025-50420
Source
NVD (
link
)
Debian (
link
)
Description
An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via supplying a crafted PDF file. This can lead to a Denial of Service (DoS).
CWEs
CWE-674
Published Date
Aug 4, 2025
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://freedesktop.com
Not Applicable
http://poppler.com
Not Applicable
https://github.com/Landw-hub/CVE-2025-50420
Exploit
Analysis
#
Affected Component
Analysis
poppler
Patched
Vulnerability Ratings
#
6.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
poppler
buildroot
2025.02.x
25.10.0
Not Affected
poppler
buildroot
master
25.10.0
Not Affected
poppler
yocto
kirkstone
22.04.0
Patched
poppler
yocto
master
25.12.0
Not Affected
Resolved with patches
#
poppler (yocto:kirkstone)
#
Title
Author
Resolve
1
Fix crash in pdfseparate
Sune Vuorela <sune@vuorela.dk>
CVE-2025-50420
poppler (yocto:scarthgap)
#
Title
Author
Resolve
1
Fix crash in pdfseparate
Sune Vuorela <sune@vuorela.dk>
CVE-2025-50420