Related Vulnerabilities: CVE-2018-8002  

In PoDoFo, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow. Remote attackers could leverage this vulnerability to cause a denial-of-service or possibly unspecified other impact via a crafted pdf file.

Severity Low

Remote No

Type Denial of service

Description

In PoDoFo, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow. Remote attackers could leverage this vulnerability to cause a denial-of-service or possibly unspecified other impact via a crafted pdf file.

AVG-1427 podofo 0.9.6-3 Low Vulnerable

https://www.exploit-db.com/exploits/44946
https://sourceforge.net/p/podofo/tickets/15/
https://bugzilla.redhat.com/show_bug.cgi?id=1548930
https://bugzilla.redhat.com/attachment.cgi?id=1400720