384
VMScore

CVE-2018-20797

Published: 27/02/2019 Updated: 27/02/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 384
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An issue exists in PoDoFo 0.9.6. There is an attempted excessive memory allocation in PoDoFo::podofo_calloc in base/PdfMemoryManagement.cpp when called from PoDoFo::PdfPredictorDecoder::PdfPredictorDecoder in base/PdfFiltersPrivate.cpp.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

podofo project podofo 0.9.6

Vendor Advisories

Debian Bug report logs - #923415 libpodofo: CVE-2018-20797 Package: src:libpodofo; Maintainer for src:libpodofo is Mattia Rizzolo <mattia@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 27 Feb 2019 20:39:01 UTC Severity: important Tags: security, upstream Found in version libpodofo/09 ...
An issue was discovered in PoDoFo There is an attempted excessive memory allocation in PoDoFo::podofo_calloc in base/PdfMemoryManagementcpp when called from PoDoFo::PdfPredictorDecoder::PdfPredictorDecoder in base/PdfFiltersPrivatecpp ...