CVE-2018-20797 PUBLISHED

An issue was discovered in PoDoFo 0.9.6. There is an attempted excessive memory allocation in PoDoFo::podofo_calloc in base/PdfMemoryManagement.cpp when called from PoDoFo::PdfPredictorDecoder::PdfPredictorDecoder in base/PdfFiltersPrivate.cpp.

EPSS 0.16% · 36.1th percentile

Risk Scores

EPSS Score
0.16%
36.1th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSlibpodofo0.9.3-3, 0.9.3-4, 0.9.0-1.3
Ubuntu:Pro:18.04:LTSlibpodofo0.9.5-8build1, 0.9.5-9, 0
Ubuntu:Pro:22.04:LTSlibpodofo0.9.7+dfsg-3, 0.9.7+dfsg-2, 0.9.7+dfsg-2build1
Ubuntu:Pro:20.04:LTSlibpodofo0.9.6+dfsg-5, 0.9.6+dfsg-5build1, 0

Timeline

References

Open in Interactive Console →