Vulnerabilities
Vulnerable Software
Podofo Project:  >> Podofo  >> 0.9.7  Security Vulnerabilities
A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file.
CVSS Score
5.5
EPSS Score
0.002
Published
2021-05-26
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-05-26
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/PdfNamesTree.cpp can lead to a stack overflow.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-05-26
A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.
CVSS Score
7.8
EPSS Score
0.003
Published
2021-05-26


Contact Us

Shodan ® - All rights reserved