CVE-2017-8053

PoDoFo 0.9.5 allows denial of service (infinite recursion and stack consumption) via a crafted PDF file in PoDoFo::PdfParser::ReadDocumentStructure (PdfParser.cpp).
References
Link Resource
http://openwall.com/lists/oss-security/2017/04/22/1 Mailing List Third Party Advisory
http://www.evernote.com/l/AnGe5jS_MvNDaZvZW-fzvV37H4ggSf5IkQo/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:podofo_project:podofo:0.9.5:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-04-22 21:59

Updated : 2023-12-10 12:01


NVD link : CVE-2017-8053

Mitre link : CVE-2017-8053

CVE.ORG link : CVE-2017-8053


JSON object : View

Products Affected

podofo_project

  • podofo
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')