Loading
Generated remediation guidance and an executive summary. No account required.
NSSCryptoSignBackend.cc in Poppler before 25.04.0 does not verify the adbe.pkcs7.sha1 signatures on documents, resulting in potential signature forgeries.
Use CWE-347, Freedesktop vendor hub and Poppler product page to widen CVE-2025-43903 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-6239, CVE-2020-23804 and CVE-2025-50420 for nearby disclosures in the same product family.