<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cpe="http://cpe.mitre.org/language/2.0" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvssv2="http://scap.nist.gov/schema/cvss-v2/1.0" xmlns:cvssv3="https://www.first.org/cvss/cvss-v3.0.xsd" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:ns0="http://purl.org/dc/elements/1.1/" xmlns:prod="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod" xmlns:scap-core="http://scap.nist.gov/schema/scap-core/1.0" xmlns:sch="http://purl.oclc.org/dsdl/schematron" xmlns:vuln="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
  <DocumentTitle xml:lang="en">Security update for poppler</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>SUSE-SU-2021:3854-1</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2021-12-01T16:00:36Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2021-12-01T16:00:36Z</InitialReleaseDate>
    <CurrentReleaseDate>2021-12-01T16:00:36Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">Security update for poppler</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">This update for poppler fixes the following issues:

- CVE-2017-18267: Fixed an infinite recursion that would allow remote attackers to cause a denial of service (bsc#1092945).
- CVE-2018-13988: Added an improper implementation check which otherwise could allow buffer overflows, memory corruption, and denial of service (bsc#1102531).
- CVE-2018-16646: Fixed an infinite recursion which could allow a denial-of-service attack via a specially crafted PDF file (bsc#1107597).
- CVE-2018-18897: Fixed a memory leak (bsc#1114966).
- CVE-2018-19058: Fixed a bug which could allow a denial-of-service attack via a specially crafted PDF file (bsc#1115187).
- CVE-2018-19059: Fixed an out-of-bounds read access which could allow a denial-of-service attack (bsc#1115186).
- CVE-2018-19060: Fixed a NULL pointer dereference which could allow a denial-of-service attack (bsc#1115185).
- CVE-2018-19149: Fixed a NULL pointer dereference which could allow a denial-of-service attack (bsc#1115626).
- CVE-2018-20481: Fixed a NULL pointer dereference while handling unallocated XRef entries which could allow a denial-of-service attack (bsc#1120495).
- CVE-2018-20551: Fixed a reachable assertion which could allow a denial-of-service attack through specially crafted PDF files (bsc#1120496).
- CVE-2018-20650: Fixed a reachable assertion which could allow denial-of-service through specially crafted PDF files (bsc#1120939).
- CVE-2018-20662: Fixed a bug which could potentially crash the running process by SIGABRT resulting in a denial-of-service attack through a specially crafted PDF file (bsc#1120956).
- CVE-2019-10871: Fixed a heap-based buffer  over-read in the function PSOutputDev::checkPageSlice at PSOutputDev.cc (bsc#1131696).
- CVE-2019-10872: Fixed a heap-based buffer over-read in the function Splash::blitTransparent at splash/Splash.cc (bsc#1131722).
- CVE-2019-14494: Fixed a divide-by-zero error in the function SplashOutputDev::tilingPatternFill (bsc#1143950).
- CVE-2019-7310: Fixed a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) that allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PDF document (bsc#1124150).
- CVE-2019-9200: Fixed a heap-based buffer underwrite which could allow denial-of-service attack through a specially crafted PDF file (bsc#1127329)
- CVE-2019-9631: Fixed a heap-based buffer over-read  in the CairoRescaleBox.cc downsample_row_box_filter function (bsc#1129202).
- CVE-2019-9903: Fixed excessive stack consumption in the Dict::find() method, which can be triggered by passing a crafted pdf file to the pdfunite binary (bsc#1130229).
- CVE-2019-9959: Fixed integer overflow that made it possible to allocate a large memory chunk on the heap with a size controlled by an attacker (bsc#1142465).
- CVE-2020-27778: Fixed buffer overflow vulnerability in pdftohtml (bsc#1179163).
  </Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">SUSE-2021-3854,SUSE-SLE-Product-HPC-15-2021-3854,SUSE-SLE-Product-HPC-15-SP1-ESPOS-2021-3854,SUSE-SLE-Product-HPC-15-SP1-LTSS-2021-3854,SUSE-SLE-Product-SLES-15-2021-3854,SUSE-SLE-Product-SLES-15-SP1-BCL-2021-3854,SUSE-SLE-Product-SLES-15-SP1-LTSS-2021-3854,SUSE-SLE-Product-SLES_SAP-15-2021-3854,SUSE-SLE-Product-SLES_SAP-15-SP1-2021-3854,SUSE-SLE-Product-WE-15-SP2-2021-3854,SUSE-Storage-6-2021-3854</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      <Description>Link for SUSE-SU-2021:3854-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2021-December/009785.html</URL>
      <Description>E-Mail link for SUSE-SU-2021:3854-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1092945</URL>
      <Description>SUSE Bug 1092945</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1102531</URL>
      <Description>SUSE Bug 1102531</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1107597</URL>
      <Description>SUSE Bug 1107597</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1114966</URL>
      <Description>SUSE Bug 1114966</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1115185</URL>
      <Description>SUSE Bug 1115185</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1115186</URL>
      <Description>SUSE Bug 1115186</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1115187</URL>
      <Description>SUSE Bug 1115187</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1115626</URL>
      <Description>SUSE Bug 1115626</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1120495</URL>
      <Description>SUSE Bug 1120495</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1120496</URL>
      <Description>SUSE Bug 1120496</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1120939</URL>
      <Description>SUSE Bug 1120939</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1120956</URL>
      <Description>SUSE Bug 1120956</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1124150</URL>
      <Description>SUSE Bug 1124150</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1127329</URL>
      <Description>SUSE Bug 1127329</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1129202</URL>
      <Description>SUSE Bug 1129202</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1130229</URL>
      <Description>SUSE Bug 1130229</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1131696</URL>
      <Description>SUSE Bug 1131696</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1131722</URL>
      <Description>SUSE Bug 1131722</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1142465</URL>
      <Description>SUSE Bug 1142465</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1143950</URL>
      <Description>SUSE Bug 1143950</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1179163</URL>
      <Description>SUSE Bug 1179163</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2017-18267/</URL>
      <Description>SUSE CVE CVE-2017-18267 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-13988/</URL>
      <Description>SUSE CVE CVE-2018-13988 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-16646/</URL>
      <Description>SUSE CVE CVE-2018-16646 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-18897/</URL>
      <Description>SUSE CVE CVE-2018-18897 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-19058/</URL>
      <Description>SUSE CVE CVE-2018-19058 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-19059/</URL>
      <Description>SUSE CVE CVE-2018-19059 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-19060/</URL>
      <Description>SUSE CVE CVE-2018-19060 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-19149/</URL>
      <Description>SUSE CVE CVE-2018-19149 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-20481/</URL>
      <Description>SUSE CVE CVE-2018-20481 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-20551/</URL>
      <Description>SUSE CVE CVE-2018-20551 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-20650/</URL>
      <Description>SUSE CVE CVE-2018-20650 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2018-20662/</URL>
      <Description>SUSE CVE CVE-2018-20662 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-10871/</URL>
      <Description>SUSE CVE CVE-2019-10871 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-10872/</URL>
      <Description>SUSE CVE CVE-2019-10872 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-14494/</URL>
      <Description>SUSE CVE CVE-2019-14494 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-7310/</URL>
      <Description>SUSE CVE CVE-2019-7310 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-9200/</URL>
      <Description>SUSE CVE CVE-2019-9200 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-9631/</URL>
      <Description>SUSE CVE CVE-2019-9631 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-9903/</URL>
      <Description>SUSE CVE CVE-2019-9903 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2019-9959/</URL>
      <Description>SUSE CVE CVE-2019-9959 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2020-27778/</URL>
      <Description>SUSE CVE CVE-2020-27778 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod">
    <Branch Type="Product Family" Name="SUSE Enterprise Storage 6">
      <Branch Type="Product Name" Name="SUSE Enterprise Storage 6">
        <FullProductName ProductID="SUSE Enterprise Storage 6" CPE="cpe:/o:suse:ses:6">SUSE Enterprise Storage 6</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
        <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS" CPE="cpe:/o:suse:sle_hpc-espos:15:sp1">SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" CPE="cpe:/o:suse:sle_hpc-ltss:15:sp1">SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
        <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS" CPE="cpe:/o:suse:sle_hpc-espos:15">SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise High Performance Computing 15-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS" CPE="cpe:/o:suse:sle_hpc-ltss:15">SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 15 SP1-BCL">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 15 SP1-BCL">
        <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL" CPE="cpe:/o:suse:sles_bcl:15:sp1">SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 15 SP1-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS" CPE="cpe:/o:suse:sles-ltss:15:sp1">SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 15-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 15-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS" CPE="cpe:/o:suse:sles-ltss:15">SUSE Linux Enterprise Server 15-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server for SAP Applications 15">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server for SAP Applications 15">
        <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15" CPE="cpe:/o:suse:sles_sap:15">SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1" CPE="cpe:/o:suse:sles_sap:15:sp1">SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Workstation Extension 15 SP2">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Workstation Extension 15 SP2">
        <FullProductName ProductID="SUSE Linux Enterprise Workstation Extension 15 SP2" CPE="cpe:/o:suse:sle-we:15:sp2">SUSE Linux Enterprise Workstation Extension 15 SP2</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-cpp0-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-cpp0-32bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-cpp0-32bit-0.62.0-4.6.1">libpoppler-cpp0-32bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-cpp0-64bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-cpp0-64bit-0.62.0-4.6.1">libpoppler-cpp0-64bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-devel-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-glib-devel-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-glib8-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-glib8-32bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-glib8-32bit-0.62.0-4.6.1">libpoppler-glib8-32bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-glib8-64bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-glib8-64bit-0.62.0-4.6.1">libpoppler-glib8-64bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-qt5-1-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-qt5-1-0.62.0-4.6.1">libpoppler-qt5-1-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-qt5-1-32bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-qt5-1-32bit-0.62.0-4.6.1">libpoppler-qt5-1-32bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-qt5-1-64bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-qt5-1-64bit-0.62.0-4.6.1">libpoppler-qt5-1-64bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler-qt5-devel-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler-qt5-devel-0.62.0-4.6.1">libpoppler-qt5-devel-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler73-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler73-32bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler73-32bit-0.62.0-4.6.1">libpoppler73-32bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libpoppler73-64bit-0.62.0-4.6.1">
      <FullProductName ProductID="libpoppler73-64bit-0.62.0-4.6.1">libpoppler73-64bit-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="poppler-tools-0.62.0-4.6.1">
      <FullProductName ProductID="poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-Poppler-0_18-0.62.0-4.6.1">
      <FullProductName ProductID="typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1</FullProductName>
    </Branch>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Enterprise Storage 6">
      <FullProductName ProductID="SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Enterprise Storage 6</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-ESPOS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-ESPOS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise High Performance Computing 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise High Performance Computing 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-BCL">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-BCL</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15 SP1-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15 SP1-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 15-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server 15-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-cpp0-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1">libpoppler-cpp0-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1">libpoppler-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib-devel-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1">libpoppler-glib-devel-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler-glib8-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1">libpoppler-glib8-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="poppler-tools-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1">poppler-tools-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="typelib-1_0-Poppler-0_18-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1">typelib-1_0-Poppler-0_18-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Server for SAP Applications 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="libpoppler73-0.62.0-4.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Workstation Extension 15 SP2">
      <FullProductName ProductID="SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1">libpoppler73-0.62.0-4.6.1 as a component of SUSE Linux Enterprise Workstation Extension 15 SP2</FullProductName>
    </Relationship>
  </ProductTree>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The FoFiType1C::cvtGlyph function in fofi/FoFiType1C.cc in Poppler through 0.64.0 allows remote attackers to cause a denial of service (infinite recursion) via a crafted PDF file, as demonstrated by pdftops.</Note>
    </Notes>
    <CVE>CVE-2017-18267</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2017-18267.html</URL>
        <Description>CVE-2017-18267</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1092945</URL>
        <Description>SUSE Bug 1092945</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its memory space, as demonstrated by pdfunite. This can result in memory corruption and denial of service. This may be exploitable when a victim opens a specially crafted PDF file.</Note>
    </Notes>
    <CVE>CVE-2018-13988</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>5.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-13988.html</URL>
        <Description>CVE-2018-13988</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1102531</URL>
        <Description>SUSE Bug 1102531</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this for a DoS attack.</Note>
    </Notes>
    <CVE>CVE-2018-16646</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-16646.html</URL>
        <Description>CVE-2018-16646</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1107597</URL>
        <Description>SUSE Bug 1107597</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1140882</URL>
        <Description>SUSE Bug 1140882</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.71.0. There is a memory leak in GfxColorSpace::setDisplayProfile in GfxState.cc, as demonstrated by pdftocairo.</Note>
    </Notes>
    <CVE>CVE-2018-18897</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-18897.html</URL>
        <Description>CVE-2018-18897</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1114966</URL>
        <Description>SUSE Bug 1114966</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service because EmbFile::save2 in FileSpec.cc lacks a stream check before saving an embedded file.</Note>
    </Notes>
    <CVE>CVE-2018-19058</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-19058.html</URL>
        <Description>CVE-2018-19058</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1115187</URL>
        <Description>SUSE Bug 1115187</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.71.0. There is a out-of-bounds read in EmbFile::save2 in FileSpec.cc, will lead to denial of service, as demonstrated by utils/pdfdetach.cc not validating embedded files before save attempts.</Note>
    </Notes>
    <CVE>CVE-2018-19059</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-19059.html</URL>
        <Description>CVE-2018-19059</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1115186</URL>
        <Description>SUSE Bug 1115186</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="7">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.71.0. There is a NULL pointer dereference in goo/GooString.h, will lead to denial of service, as demonstrated by utils/pdfdetach.cc not validating a filename of an embedded file before constructing a save path.</Note>
    </Notes>
    <CVE>CVE-2018-19060</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-19060.html</URL>
        <Description>CVE-2018-19060</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1115185</URL>
        <Description>SUSE Bug 1115185</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="8">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Poppler before 0.70.0 has a NULL pointer dereference in _poppler_attachment_new when called from poppler_annot_file_attachment_get_attachment.</Note>
    </Notes>
    <CVE>CVE-2018-19149</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-19149.html</URL>
        <Description>CVE-2018-19149</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1115626</URL>
        <Description>SUSE Bug 1115626</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="9">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">XRef::getEntry in XRef.cc in Poppler 0.72.0 mishandles unallocated XRef entries, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PDF document, when XRefEntry::setFlag in XRef.h is called from Parser::makeStream in Parser.cc.</Note>
    </Notes>
    <CVE>CVE-2018-20481</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-20481.html</URL>
        <Description>CVE-2018-20481</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120495</URL>
        <Description>SUSE Bug 1120495</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="10">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A reachable Object::getString assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to construction of invalid rich media annotation assets in the AnnotRichMedia class in Annot.c.</Note>
    </Notes>
    <CVE>CVE-2018-20551</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-20551.html</URL>
        <Description>CVE-2018-20551</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120496</URL>
        <Description>SUSE Bug 1120496</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="11">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.</Note>
    </Notes>
    <CVE>CVE-2018-20650</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-20650.html</URL>
        <Description>CVE-2018-20650</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120939</URL>
        <Description>SUSE Bug 1120939</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120956</URL>
        <Description>SUSE Bug 1120956</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="12">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.</Note>
    </Notes>
    <CVE>CVE-2018-20662</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2018-20662.html</URL>
        <Description>CVE-2018-20662</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120939</URL>
        <Description>SUSE Bug 1120939</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1120956</URL>
        <Description>SUSE Bug 1120956</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1214622</URL>
        <Description>SUSE Bug 1214622</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="13">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.74.0. There is a heap-based buffer over-read in the function PSOutputDev::checkPageSlice at PSOutputDev.cc.</Note>
    </Notes>
    <CVE>CVE-2019-10871</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>4.4</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-10871.html</URL>
        <Description>CVE-2019-10871</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1131696</URL>
        <Description>SUSE Bug 1131696</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="14">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler 0.74.0. There is a heap-based buffer over-read in the function Splash::blitTransparent at splash/Splash.cc.</Note>
    </Notes>
    <CVE>CVE-2019-10872</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>6.8</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>4.4</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-10872.html</URL>
        <Description>CVE-2019-10872</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1131722</URL>
        <Description>SUSE Bug 1131722</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="15">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.</Note>
    </Notes>
    <CVE>CVE-2019-14494</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>5.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-14494.html</URL>
        <Description>CVE-2019-14494</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1143950</URL>
        <Description>SUSE Bug 1143950</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="16">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document, as demonstrated by pdftocairo.</Note>
    </Notes>
    <CVE>CVE-2019-7310</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>6.8</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>5.3</BaseScoreV3>
        <VectorV3>CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-7310.html</URL>
        <Description>CVE-2019-7310</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1124150</URL>
        <Description>SUSE Bug 1124150</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="17">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A heap-based buffer underwrite exists in ImageStream::getLine() located at Stream.cc in Poppler 0.74.0 that can (for example) be triggered by sending a crafted PDF file to the pdfimages binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.</Note>
    </Notes>
    <CVE>CVE-2019-9200</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>6.8</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>7.8</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-9200.html</URL>
        <Description>CVE-2019-9200</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1127329</URL>
        <Description>SUSE Bug 1127329</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="18">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Poppler 0.74.0 has a heap-based buffer over-read in the CairoRescaleBox.cc downsample_row_box_filter function.</Note>
    </Notes>
    <CVE>CVE-2019-9631</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>7.5</BaseScoreV2>
        <VectorV2>AV:N/AC:L/Au:N/C:P/I:P/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-9631.html</URL>
        <Description>CVE-2019-9631</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1129202</URL>
        <Description>SUSE Bug 1129202</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="19">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">PDFDoc::markObject in PDFDoc.cc in Poppler 0.74.0 mishandles dict marking, leading to stack consumption in the function Dict::find() located at Dict.cc, which can (for example) be triggered by passing a crafted pdf file to the pdfunite binary.</Note>
    </Notes>
    <CVE>CVE-2019-9903</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-9903.html</URL>
        <Description>CVE-2019-9903</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1130229</URL>
        <Description>SUSE Bug 1130229</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="20">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The JPXStream::init function in Poppler 0.78.0 and earlier doesn't check for negative values of stream length, leading to an Integer Overflow, thereby making it possible to allocate a large memory chunk on the heap, with a size controlled by an attacker, as demonstrated by pdftocairo.</Note>
    </Notes>
    <CVE>CVE-2019-9959</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>4.3</BaseScoreV2>
        <VectorV2>AV:N/AC:M/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>3.3</BaseScoreV3>
        <VectorV3>CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2019-9959.html</URL>
        <Description>CVE-2019-9959</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1142465</URL>
        <Description>SUSE Bug 1142465</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
  <vuln:Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="21">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A flaw was found in Poppler in the way certain PDF files were converted into HTML. A remote attacker could exploit this flaw by providing a malicious PDF file that, when processed by the 'pdftohtml' program, would crash the application causing a denial of service.</Note>
    </Notes>
    <CVE>CVE-2020-27778</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Enterprise Storage 6:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Enterprise Storage 6:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-ESPOS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise High Performance Computing 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-BCL:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15 SP1-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 15-LTSS:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15 SP1:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-cpp0-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib-devel-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler-glib8-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:libpoppler73-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:poppler-tools-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server for SAP Applications 15:typelib-1_0-Poppler-0_18-0.62.0-4.6.1</ProductID>
        <ProductID>SUSE Linux Enterprise Workstation Extension 15 SP2:libpoppler73-0.62.0-4.6.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>5</BaseScoreV2>
        <VectorV2>AV:N/AC:L/Au:N/C:N/I:N/A:P</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>5.3</BaseScoreV3>
        <VectorV3>CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2021/suse-su-20213854-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2020-27778.html</URL>
        <Description>CVE-2020-27778</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1179163</URL>
        <Description>SUSE Bug 1179163</Description>
      </Reference>
    </References>
  </vuln:Vulnerability>
</cvrfdoc>
