Heap-based Buffer Overflow in PoDoFo PDF Processing Library
CVE-2017-8378
9.8CRITICAL
What is CVE-2017-8378?
A heap-based buffer overflow exists within the PdfParser::ReadObjects function in the PoDoFo library version 0.9.5. This vulnerability can be exploited by remote attackers, potentially leading to a denial of service through an application crash. The issue arises from improper handling of the m_offsets.size vector, which may lead to unpredictable impacts on systems utilizing this library.
