Denial of Service Vulnerability in PoDoFo by PoDoFo Developers
CVE-2018-11256
6.5MEDIUM
What is CVE-2018-11256?
A vulnerability has been identified in PoDoFo version 0.9.5, specifically in the PdfDocument::Append() function found in PdfDocument.cpp. This flaw enables remote attackers to exploit crafted PDF documents, leading to a denial of service condition through a NULL pointer dereference which results in application crashes. Users are advised to apply suitable mitigations to safeguard against potential exploits leveraging this vulnerability.
