Search CVE reports


Toggle filters

31 – 40 of 63 results


CVE-2018-14320

Medium priority
Needs evaluation

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of PoDoFo. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open...

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2018-12983

Low priority

Some fixes available 5 of 15

A stack-based buffer over-read in the PdfEncryptMD5Base::ComputeEncryptionKey() function in PdfEncrypt.cpp in PoDoFo 0.9.6-rc1 could be leveraged by remote attackers to cause a denial-of-service via a crafted pdf file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Fixed Fixed Fixed
Show less packages

CVE-2018-12982

Low priority
Needs evaluation

Invalid memory read in the PoDoFo::PdfVariant::DelayedLoad() function in PdfVariant.h in PoDoFo 0.9.6-rc1 allows remote attackers to have denial-of-service impact via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2018-11256

Low priority
Needs evaluation

An issue was discovered in PoDoFo 0.9.5. The function PdfDocument::Append() in PdfDocument.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF...

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2018-11255

Low priority

Some fixes available 5 of 15

An issue was discovered in PoDoFo 0.9.5. The function PdfPage::GetPageNumber() in PdfPage.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF document.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Fixed Fixed Fixed
Show less packages

CVE-2018-11254

Medium priority
Needs evaluation

An issue was discovered in PoDoFo 0.9.5. There is an Excessive Recursion in the PdfPagesTree::GetPageNode() function of PdfPagesTree.cpp. Remote attackers could leverage this vulnerability to cause a denial of service through a...

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Needs evaluation
Show less packages

CVE-2017-8787

Low priority
Vulnerable

The PoDoFo::PdfXRefStreamParserObject::ReadXRefStreamEntry function in base/PdfXRefStreamParserObject.cpp:224 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have...

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-8378

Medium priority
Vulnerable

Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors...

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-8054

Medium priority
Vulnerable

The function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (infinite recursion and application crash) via a crafted PDF document.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-8053

Medium priority
Vulnerable

PoDoFo 0.9.5 allows denial of service (infinite recursion and stack consumption) via a crafted PDF file in PoDoFo::PdfParser::ReadDocumentStructure (PdfParser.cpp).

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpodofo Not affected Not affected Not affected Vulnerable
Show less packages