Heap Use-After-Free Vulnerability in PoDoFo PDF Library
CVE-2025-46205
8.1HIGH
What is CVE-2025-46205?
A vulnerability has been identified in the PoDoFo PDF library, specifically within the PdfTokenizer::ReadDictionary function. This flaw results from a heap-use-after-free condition when processing certain crafted PDF files. Attackers can exploit this vulnerability to trigger a Denial of Service (DoS), leading to potential application crashes. Users of affected versions are advised to implement mitigation strategies and update to the latest versions to safeguard against such threats.
