Related Vulnerabilities: CVE-2021-30472  

A security issue was found in PoDoFo. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.

Severity Medium

Remote No

Type Arbitrary code execution

Description

A security issue was found in PoDoFo. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.

AVG-1792 podofo 0.9.7-1 Medium Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1947458
https://sourceforge.net/p/podofo/tickets/132/
https://sourceforge.net/p/podofo/tickets/132/attachment/bug4