VYPR

PDFio

by PDFio

Source repositories

CVEs (4)

  • CVE-2026-77220MedAug 21, 2026
    risk 0.35cvss 6.5epss 0.00

    PDFio before 1.6.5 contains a dangling pointer vulnerability in the dictionary string-formatting function that stores a pointer to a stack-local buffer in the document dictionary without copying the string value. In multi-threaded or pooled-request environments, attackers or…

  • CVE-2024-42358MedAug 6, 2024
    risk 0.00cvss 6.2epss 0.00

    PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the TTF parser. Maliciously crafted TTF files can cause the program to utilize 100% of the Memory and enter an infinite loop. This can also lead to a…

  • CVE-2023-28428MedMar 20, 2023
    risk 0.00cvss 6.2epss 0.00

    PDFio is a C library for reading and writing PDF files. In versions 1.1.0 and prior, a denial of service vulnerability exists in the pdfio parser. Crafted pdf files can cause the program to run at 100% utilization and never terminate. This is different from CVE-2023-24808. A…

  • CVE-2023-24808MedFeb 7, 2023
    risk 0.00cvss 5.3epss 0.01

    PDFio is a C library for reading and writing PDF files. In versions prior to 1.1.0 a denial of service (DOS) vulnerability exists in the pdfio parser. Crafted pdf files can cause the program to run at 100% utilization and never terminate. The pdf which causes this crash found…