Vulnerabilities > Podofo Project > Podofo > 0.9.5

DATE CVE VULNERABILITY TITLE RISK
2018-05-18 CVE-2018-11256 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
An issue was discovered in PoDoFo 0.9.5.
4.3
2018-05-18 CVE-2018-11255 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
An issue was discovered in PoDoFo 0.9.5.
4.3
2018-05-18 CVE-2018-11254 Uncontrolled Recursion vulnerability in Podofo Project Podofo 0.9.5
An issue was discovered in PoDoFo 0.9.5.
4.3
2018-03-09 CVE-2018-8002 Infinite Loop vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow.
6.8
2018-03-09 CVE-2018-8001 Out-of-bounds Read vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there exists a heap-based buffer over-read vulnerability in UnescapeName() in PdfName.cpp.
6.8
2018-03-09 CVE-2018-8000 Out-of-bounds Write vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there exists a heap-based buffer overflow vulnerability in PoDoFo::PdfTokenizer::GetNextToken() in PdfTokenizer.cpp, a related issue to CVE-2017-5886.
6.8
2018-01-27 CVE-2018-6352 Resource Exhaustion vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there is an Excessive Iteration in the PdfParser::ReadObjectsInternal function of base/PdfParser.cpp.
4.3
2018-01-19 CVE-2018-5783 Allocation of Resources Without Limits or Throttling vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PoDoFo::PdfVecObjects::Reserve function (base/PdfVecObjects.h).
4.3
2018-01-09 CVE-2018-5309 Integer Overflow or Wraparound vulnerability in Podofo Project Podofo 0.9.5
In PoDoFo 0.9.5, there is an integer overflow in the PdfObjectStreamParserObject::ReadObjectsFromStream function (base/PdfObjectStreamParserObject.cpp).
4.3
2018-01-09 CVE-2018-5308 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
PoDoFo 0.9.5 does not properly validate memcpy arguments in the PdfMemoryOutputStream::Write function (base/PdfOutputStream.cpp).
6.8