Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-8378

Опубликовано: 01 мая 2017
Источник: debian
EPSS Низкий

Описание

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libpodofofixed0.9.5-9package
libpodofono-dsastretchpackage
libpodofono-dsajessiepackage
libpodofono-dsawheezypackage

Примечания

  • PoC: https://github.com/xiangxiaobo/poc_and_report/tree/master/podofo_heapoverflow_PdfParser.ReadObjects

  • Upstream commit: https://sourceforge.net/p/podofo/code/1833/

EPSS

Процентиль: 73%
0.00743
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 9 лет назад

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size.

CVSS3: 9.8
nvd
почти 9 лет назад

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size.

CVSS3: 9.8
github
больше 3 лет назад

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size.

suse-cvrf
больше 1 года назад

Security update for podofo

suse-cvrf
больше 1 года назад

Security update for podofo

EPSS

Процентиль: 73%
0.00743
Низкий