Stack-based Buffer Over-read in PoDoFo Product by Vendor
CVE-2018-12983
7.8HIGH
What is CVE-2018-12983?
A vulnerability has been identified in the PdfEncryptMD5Base::ComputeEncryptionKey() function of PoDoFo, specifically version 0.9.6-rc1. This vulnerability allows remote attackers to exploit a crafted PDF file, leading to a potential denial-of-service condition. Attackers can leverage this flaw to manipulate memory handling, resulting in application instability and possible crashes.
