High severity7.8NVD Advisory· Published Jun 29, 2018· Updated Jun 17, 2026
CVE-2018-12983
CVE-2018-12983
Description
A stack-based buffer over-read in the PdfEncryptMD5Base::ComputeEncryptionKey() function in PdfEncrypt.cpp in PoDoFo 0.9.6-rc1 could be leveraged by remote attackers to cause a denial-of-service via a crafted pdf file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- Range: = 0.9.6-rc1
- osv-coords6 versionspkg:rpm/opensuse/podofo-0_10&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/podofo&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/podofo&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/podofo&distro=openSUSE%20Tumbleweedpkg:rpm/suse/podofo&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/podofo&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5
< 0.10.5-1.1+ 5 more
- (no CPE)range: < 0.10.5-1.1
- (no CPE)range: < 0.9.6-150300.3.6.1
- (no CPE)range: < 0.9.6-150300.3.6.1
- (no CPE)range: < 0.9.7-3.1
- (no CPE)range: < 0.9.2-3.15.1
- (no CPE)range: < 0.9.2-3.15.1
Patches
Vulnerability mechanics
References
3- bugzilla.redhat.com/show_bug.cginvdExploitIssue TrackingThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEJQUDZT4JRJSPZYY3UPSCTFPAC5TUHK/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UMEMSUUXA3SL3AZAKKCTZFXVPHTBBK3O/nvd
News mentions
0No linked articles in our index yet.