Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
podofo project vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2018-8000
In PoDoFo 0.9.5, there exists a heap-based buffer overflow vulnerability in PoDoFo::PdfTokenizer::GetNextToken() in PdfTokenizer.cpp, a related issue to CVE-2017-5886. Remote attackers could leverage this vulnerability to cause a denial-of-service or potentially execute arbitrary...
Podofo Project Podofo 0.9.5
6.8
CVSSv2
CVE-2018-8002
In PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow. Remote attackers could leverage this vulnerability to cause a denial-of-service or possibly unspecified other impact via...
Podofo Project Podofo 0.9.5
1 EDB exploit
NA
CVE-2023-31555
podofoinfo 0.10.0 exists to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad.
Podofo Project Podofo 0.10.0
NA
CVE-2023-31556
podofoinfo 0.10.0 exists to contain a segmentation violation via the function PoDoFo::PdfDictionary::findKeyParent.
Podofo Project Podofo 0.10.0
NA
CVE-2023-31566
Podofo v0.10.0 exists to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted().
Podofo Project Podofo 0.10.0
NA
CVE-2023-31567
Podofo v0.10.0 exists to contain a heap buffer overflow via the component PoDoFo::PdfEncryptAESV3::PdfEncryptAESV3.
Podofo Project Podofo 0.10.0
NA
CVE-2023-31568
Podofo v0.10.0 exists to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4.
Podofo Project Podofo 0.10.0
4.3
CVSSv2
CVE-2017-5852
The PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVariant.cpp in PoDoFo 0.9.4 allows remote malicious users to cause a denial of service (infinite loop) via a crafted file.
Podofo Project Podofo 0.9.4
6.8
CVSSv2
CVE-2017-5853
Integer overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote malicious users to have unspecified impact via a crafted file.
Podofo Project Podofo 0.9.4
4.3
CVSSv2
CVE-2017-5854
base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
Podofo Project Podofo 0.9.4
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »