Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.
https://www.debian.org/security/2018/dsa-4079
https://bugs.freedesktop.org/show_bug.cgi?id=101541
https://access.redhat.com/errata/RHSA-2017:2551