CVE-2017-5854 PUBLISHED

base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.

EPSS 0.60% · 69.1th percentile

Risk Scores

EPSS Score
0.60%
69.1th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSlibpodofo0, 0.9.0-1.3, 0.9.3-3

Timeline

References

Open in Interactive Console →