VendorsPoDoFo Projectpodofo0.10.0
Vulnerabilities

PoDoFo Project PoDoFo 0.10.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2023-31568
Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4.
Published 2023-05-10 · Modified
8.8EPSS 0.008
CVE-2023-31567
Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptAESV3::PdfEncryptAESV3.
Published 2023-05-10 · Modified
8.8EPSS 0.007
CVE-2023-31566
Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted().
Published 2023-05-10 · Modified
8.8EPSS 0.007
CVE-2023-31556
podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfDictionary::findKeyParent.
Published 2023-05-10 · Modified
8.8EPSS 0.007
CVE-2023-2241
PoDoFo PdfXRefStreamParserObject.cpp readXRefStreamEntry heap-based overflow
Published 2023-04-22 · Modified
7.8EPSS 0.004
CVE-2023-31555
podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad.
Published 2023-05-10 · Modified
6.5EPSS 0.006