CVE-2025-43903 | Freedesktop Poppler up to 25.03.x adbe.pkcs7.sha1 Signature NSSCryptoSignBackend.cc signature verification (EUVD-2025-11892 / Nessus ID 235095)
A vulnerability classified as problematic has been found in Freedesktop Poppler up to 25.03.x. Impacted is an unknown function of the file NSSCryptoSignBackend.cc of the component adbe.pkcs7.sha1 Signature Handler. The manipulation leads to improper verification of cryptographic signature.
This vulnerability is uniquely identified as CVE-2025-43903. Local access is required to approach this attack. No exploit exists.
It is recommended to upgrade the affected component.