Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-9199

Опубликовано: 26 фев. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8
CVSS3: 8.8

Описание

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
cosmic

ignored

end of life
devel

not-affected

0.9.6+dfsg-5
disco

ignored

end of life
eoan

not-affected

0.9.6+dfsg-5
esm-apps/bionic

needs-triage

esm-apps/focal

not-affected

0.9.6+dfsg-5
esm-apps/jammy

not-affected

0.9.6+dfsg-5
esm-apps/noble

not-affected

0.9.6+dfsg-5
esm-apps/xenial

needs-triage

Показывать по

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 7 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

CVSS3: 8.8
debian
почти 7 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoD ...

CVSS3: 8.8
github
больше 3 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

suse-cvrf
больше 1 года назад

Security update for podofo

suse-cvrf
больше 1 года назад

Security update for podofo

6.8 Medium

CVSS2

8.8 High

CVSS3