CVE-2018-20797

Name
CVE-2018-20797
Description
An issue was discovered in PoDoFo 0.9.6. There is an attempted excessive memory allocation in PoDoFo::podofo_calloc in base/PdfMemoryManagement.cpp when called from PoDoFo::PdfPredictorDecoder::PdfPredictorDecoder in base/PdfFiltersPrivate.cpp.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://sourceforge.net/p/podofo/tickets/34/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:podofo_project:podofo:0.9.6:*:*:*:*:*:*:* podofo == None == 0.9.6

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
podofo 3.13-community 0.9.7-r0 Francesco Colista <fcolista@alpinelinux.org> fixed
podofo 3.14-community 0.9.7-r0 Francesco Colista <fcolista@alpinelinux.org> fixed