Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-30472

Опубликовано: 26 мая 2021
Источник: debian

Описание

A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libpodofounfixedpackage
libpodofopostponedtrixiepackage
libpodofopostponedbookwormpackage
libpodofono-dsabullseyepackage
libpodofono-dsabusterpackage
libpodofopostponedstretchpackage

Примечания

  • https://sourceforge.net/p/podofo/tickets/132/

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 4 лет назад

A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.

CVSS3: 7.8
nvd
больше 4 лет назад

A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.

CVSS3: 7.8
github
больше 3 лет назад

A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.