CVE-2017-8378 PUBLISHED

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size.

EPSS 0.74% · 72.9th percentile

Risk Scores

EPSS Score
0.74%
72.9th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSlibpodofo0.9.3-4, 0, 0.9.0-1.3
Ubuntu:Pro:14.04:LTSlibpodofo0, 0.9.0-1.1ubuntu1, 0.9.0-1.2

Timeline

References

Open in Interactive Console →