Search CVE reports


Toggle filters

51 – 60 of 61 results


CVE-2017-6845

Medium priority
Vulnerable

The PoDoFo::PdfColor::operator function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6844

Medium priority

Some fixes available 1 of 6

Buffer overflow in the PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6843

Medium priority

Some fixes available 1 of 6

Heap-based buffer overflow in the PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6842

Medium priority

Some fixes available 1 of 6

The ColorChanger::GetColorFromStack function in colorchanger.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6841

Medium priority
Vulnerable

The GraphicsStack::TGraphicsStackElement::~TGraphicsStackElement function in graphicsstack.h in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6840

Medium priority

Some fixes available 1 of 6

The ColorChanger::GetColorFromStack function in colorchanger.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (invalid read) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5886

Medium priority

Some fixes available 2 of 6

Heap-based buffer overflow in the PoDoFo::PdfTokenizer::GetNextToken function in PdfTokenizer.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-5855

Low priority
Vulnerable

The PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5854

Medium priority

Some fixes available 1 of 6

base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5853

Medium priority

Some fixes available 1 of 6

Integer overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected package

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages