PoDoFo Project PoDoFo 0.9.7

CPE Details

PoDoFo Project PoDoFo 0.9.7
0.9.7
2021-06-04
12h05 +00:00
2021-07-07
13h59 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:podofo_project:podofo:0.9.7:*:*:*:*:*:*:*

Informations

Vendor

podofo_project

Product

podofo

Version

0.9.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-30472 2021-05-26 19h38 +00:00 A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.
7.8
High
CVE-2021-30471 2021-05-26 19h38 +00:00 A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/PdfNamesTree.cpp can lead to a stack overflow.
5.5
Medium
CVE-2021-30470 2021-05-26 19h37 +00:00 A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
5.5
Medium
CVE-2021-30469 2021-05-26 19h37 +00:00 A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file.
5.5
Medium