Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-9199

Опубликовано: 26 фев. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
cosmic

ignored

end of life
devel

not-affected

0.9.6+dfsg-5
disco

ignored

end of life
eoan

not-affected

0.9.6+dfsg-5
esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needs-triage

esm-apps/focal

not-affected

0.9.6+dfsg-5
esm-apps/jammy

not-affected

0.9.6+dfsg-5
esm-apps/noble

not-affected

0.9.6+dfsg-5

Показывать по

EPSS

Процентиль: 83%
0.02552
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
больше 7 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

CVSS3: 8.8
debian
больше 7 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoD ...

CVSS3: 8.8
github
около 4 лет назад

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.

suse-cvrf
около 2 лет назад

Security update for podofo

suse-cvrf
почти 2 года назад

Security update for podofo

EPSS

Процентиль: 83%
0.02552
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3