Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

61 – 70 of 70 results


CVE-2017-6844

Medium priority

Some fixes available 1 of 6

Buffer overflow in the PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6843

Medium priority

Some fixes available 1 of 6

Heap-based buffer overflow in the PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6842

Medium priority

Some fixes available 1 of 6

The ColorChanger::GetColorFromStack function in colorchanger.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6841

Medium priority
Vulnerable

The GraphicsStack::TGraphicsStackElement::~TGraphicsStackElement function in graphicsstack.h in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-6840

Medium priority

Some fixes available 1 of 6

The ColorChanger::GetColorFromStack function in colorchanger.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (invalid read) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5886

Medium priority

Some fixes available 1 of 6

Heap-based buffer overflow in the PoDoFo::PdfTokenizer::GetNextToken function in PdfTokenizer.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5855

Low priority
Vulnerable

The PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5854

Medium priority

Some fixes available 1 of 6

base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5853

Medium priority

Some fixes available 1 of 6

Integer overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2017-5852

Medium priority

Some fixes available 1 of 6

The PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVariant.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted file.

1 affected packages

libpodofo

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libpodofo Not affected Not affected Not affected Not affected Vulnerable
Show less packages