---
id: CVE-2026-93312
title: A flaw has been found in Freedesktop Poppler 26.07.0
summary: >-
  A flaw has been found in Freedesktop Poppler 26.07.0. Impacted is the function
  JBIG2Stream::rewind of the file poppler/JBIG2Stream.cc. This manipulation
  causes null pointer dereference. It is possible to initiate the attack
  remotely. The…
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'
cwe:
  - CWE-404
  - CWE-476
vendor: Freedesktop
product: Poppler
affected:
  - Poppler 26.07.0
published: '2026-09-18'
updated: '2026-09-22'
sourceUpdated: '2026-09-22T19:16:57.607'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-93312'
references:
  - url: >-
      https://github.com/r1ck9-2q/cve_summit/blob/main/Null-pointer-offset-undefined-behavior-in-JBIG2Stream-rewind-JBIG2Stream.cc-1229.md
    label: cna@vuldb.com
  - url: >-
      https://gitlab.freedesktop.org/poppler/poppler/-/commit/5e49250f13b0390edeb3f90eb4c02c9941f97067
    label: cna@vuldb.com
  - url: 'https://gitlab.freedesktop.org/poppler/poppler/-/merge_requests/2314'
    label: cna@vuldb.com
  - url: 'https://gitlab.freedesktop.org/poppler/poppler/-/work_items/1759'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-93312'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/942345'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/406610'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/406610/cti'
    label: cna@vuldb.com
  - url: 'https://gitlab.freedesktop.org/poppler/poppler/-/work_items/1759'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
  - url: 'https://vuldb.com/submit/942345'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
  - url: >-
      https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-93312.json
  - url: 'https://access.redhat.com/security/cve/CVE-2026-93312'
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2537889'
  - url: 'https://www.cve.org/CVERecord?id=CVE-2026-93312'
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-93312'
  - url: 'https://access.redhat.com/errata/RHSA-2026:58482'
tags:
  - nvd
  - cve.org
  - exploit-available
  - csaf
  - vex
  - red-hat
epss: 0.00594
epssPercentile: 0.46047
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-22T18:22:51.076168Z'
ingestedAt: '2026-09-18T01:33:24.268Z'
patched:
  - hardened_images
---

## Overview

A flaw has been found in Freedesktop Poppler 26.07.0. Impacted is the function JBIG2Stream::rewind of the file poppler/JBIG2Stream.cc. This manipulation causes null pointer dereference. It is possible to initiate the attack remotely. The exploit has been published and may be used. Upgrading to version 26.08.0 is recommended to address this issue. Patch name: 5e49250f13b0390edeb3f90eb4c02c9941f97067. Upgrading the affected component is advised.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.

## Vendor advisories

- **RHSA-2026:58482** · Red Hat · fixed in: Red Hat Hardened Images · released 2026-08-22 · [advisory](https://access.redhat.com/errata/RHSA-2026:58482)
