Poppler is vulnerable to a NULL pointer dereference in the Annot.h:AnnotPath::getCoordsLength() function. An attacker could exploit this to cause a denial of service via crafted PDF.
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2018:3140 https://access.redhat.com/errata/RHSA-2018:3140
Red Hat Product Security has rated this issue as having low security impact and a future update may address this flaw.