In PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfParserObject::ParseFileComplete() in PdfParserObject.cpp which may result in stack overflow. Remote attackers could leverage this vulnerability to cause a denial-of-service or possibly unspecified other impact via a crafted pdf file.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1548930 | third party advisory issue tracking |
https://www.exploit-db.com/exploits/44946/ | third party advisory vdb entry exploit |