Heap-based Buffer Overflow in PoDoFo Product
CVE-2017-6843
7.8HIGH
What is CVE-2017-6843?
A heap-based buffer overflow vulnerability exists within the PoDoFo library in the DelayedLoad function found in PdfVariant.h. This flaw allows remote attackers to potentially exploit the vulnerability by sending specifically crafted PDF files to an unsuspecting user. Successful exploitation could result in unexpected behavior of the application, leading to various undesirable outcomes, including system crashes or arbitrary code execution.
