CVE-2021-30470 - log back

CVE-2021-30470 edited at 09 Apr 2021 10:29:57
Type
- Arbitrary code execution
+ Denial of service
CVE-2021-30470 edited at 09 Apr 2021 10:27:50
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary code execution
Description
+ A security issue was found in PoDoFo. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
References
+ https://bugzilla.redhat.com/show_bug.cgi?id=1947436
+ https://sourceforge.net/p/podofo/tickets/130/
+ https://sourceforge.net/p/podofo/tickets/130/attachment/bug2
Notes
CVE-2021-30470 created at 09 Apr 2021 10:24:26