CVE-2019-9199 log
Source |
|
Severity | Low |
Remote | No |
Type | Denial of service |
Description | PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact. The issue is fixed in PoDoFo version 0.9.7. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-867 | podofo | 0.9.6-3 | 0.9.7-1 | Medium | Fixed | FS#61651 |
Date | Advisory | Group | Package | Severity | Type |
---|---|---|---|---|---|
20 Jan 2021 | ASA-202101-36 | AVG-867 | podofo | Medium | multiple issues |