CVE-2018-5783 log

Source
Severity Low
Remote No
Type Denial of service
Description
In PoDoFo 0.9.6, there is an uncontrolled memory allocation in the PoDoFo::PdfVecObjects::Reserve function (base/PdfVecObjects.h). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted pdf file. The issue is fixed in PoDoFo version 0.9.7.
Group Package Affected Fixed Severity Status Ticket
AVG-867 podofo 0.9.6-3 0.9.7-1 Medium Fixed FS#61651
Date Advisory Group Package Severity Type
20 Jan 2021 ASA-202101-36 AVG-867 podofo Medium multiple issues
References
https://sourceforge.net/p/podofo/tickets/4/
https://sourceforge.net/p/podofo/code/1949/