The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file, because of ImageExtractor.cpp.
CPE | Name | Operator | Version |
---|---|---|---|
podofo:edge | eq | 0.9.6-r2 | |
podofo:edge | eq | 0.9.6-r2 |
lists.fedoraproject.org/archives/list/[email protected]/message/CTB2J5XWOEGAJYR2N66GAECUIKDG6O2S/
lists.fedoraproject.org/archives/list/[email protected]/message/XHFOCBZCF3GX7A6FWE3JM7P37TQWGINJ/
secdb.alpinelinux.org/edge/community.yaml
secdb.alpinelinux.org/v3.13/community.yaml
sourceforge.net/p/podofo/tickets/75/