In PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PdfParser::ReadXRefSubsection function (base/PdfParser.cpp). Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted pdf file.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1531956 | Exploit Issue Tracking Mailing List Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-01-08 07:29
Updated : 2019-10-03 00:03
NVD link : CVE-2018-5296
Mitre link : CVE-2018-5296
CVE.ORG link : CVE-2018-5296
JSON object : View
Products Affected
podofo_project
- podofo
CWE
CWE-770
Allocation of Resources Without Limits or Throttling