Описание
PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().
PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2020-20740
- https://github.com/enferex/pdfresurrect/issues/14
- https://github.com/enferex/pdfresurrect/commit/1b422459f07353adce2878806d5247d9e91fb397
- https://lists.debian.org/debian-lts-announce/2020/12/msg00002.html
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JMEEEPBBGER5LPABBRVZLMCC6Z24RBXW
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZOIEVFM3SIMAEOFJKKMYH2TLZ7PXLSUD
Связанные уязвимости
CVSS3: 7.8
ubuntu
около 5 лет назад
PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().
CVSS3: 7.8
nvd
около 5 лет назад
PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().
CVSS3: 7.8
debian
около 5 лет назад
PDFResurrect before 0.20 lack of header validation checks causes heap- ...