Stack-Based Buffer Overflow in PoDoFo PDF Library
CVE-2021-30472
7.8HIGH
What is CVE-2021-30472?
A vulnerability exists in the PoDoFo PDF library version 0.9.7 that can lead to a stack-based buffer overflow. This issue is caused by improper validation of the keyLength value in the ComputeOwnerKey function of PdfEncryptMD5Base. As a result, this flaw could potentially allow attackers to exploit the overflow, leading to unknown consequences.
Affected Version(s)
podofo PoDoFo 0.9.7
