CVE-2018-19532 log

Source
Severity Low
Remote No
Type Denial of service
Description
A NULL pointer dereference vulnerability exists in the function PdfTranslator::setTarget() in pdftranslator.cpp of PoDoFo 0.9.6, while creating the PdfXObject, as demonstrated by podofoimpose. It allows an attacker to cause Denial of Service. The issue is fixed in PoDoFo version 0.9.7.
Group Package Affected Fixed Severity Status Ticket
AVG-867 podofo 0.9.6-3 0.9.7-1 Medium Fixed FS#61651
Date Advisory Group Package Severity Type
20 Jan 2021 ASA-202101-36 AVG-867 podofo Medium multiple issues
References
https://research.loginsoft.com/vulnerability/null-pointer-dereference-vulnerability-in-pdftranslatorsettarget-podofo-0-9-6/
https://sourceforge.net/p/podofo/tickets/32/
https://sourceforge.net/p/podofo/code/1950/