Medium severity5.5NVD Advisory· Published Apr 3, 2017· Updated May 13, 2026
CVE-2017-7379
CVE-2017-7379
Description
The PoDoFo::PdfSimpleEncoding::ConvertToEncoding function in PdfEncoding.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted PDF document.
Affected products
1- cpe:2.3:a:podofo_project:podofo:0.9.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.securityfocus.com/bid/97296nvdThird Party AdvisoryVDB Entry
- blogs.gentoo.org/ago/2017/03/31/podofo-heap-based-buffer-overflow-in-podofopdfsimpleencodingconverttoencoding-pdfencoding-cppnvdThird Party Advisory
News mentions
0No linked articles in our index yet.