Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37111
HistorySep 18, 2022 - 10:58 a.m.

Denial Of Service (DoS)

2022-09-1810:58:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
pdfresurrect
vulnerability
denial of service
infinite loop
get_xref_linear_skipped
crafted pdf file

EPSS

0.001

Percentile

27.5%

pdfresurrect is vulnerable to denial of service. The vulnerability exists because of an infinite loop in get_xref_linear_skipped() in pdf.c which allows an attacker to crash the application via a crafted PDF file.

EPSS

0.001

Percentile

27.5%