In PoDoFo 0.9.5, there exists a heap-based buffer overflow vulnerability in PoDoFo::PdfTokenizer::GetNextToken() in PdfTokenizer.cpp, a related issue to CVE-2017-5886. Remote attackers could leverage this vulnerability to cause a denial-of-service or potentially execute arbitrary code via a crafted pdf file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-09T19:00:00
Updated: 2024-08-05T06:37:59.662Z
Reserved: 2018-03-09T00:00:00
Link: CVE-2018-8000
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-09T19:29:01.180
Modified: 2024-11-21T04:13:03.827
Link: CVE-2018-8000
Redhat
No data.