CVE-2015-8981: Buffer Overflow
Published Mar 16, 2017
·Updated
Heap-based buffer overflow in the PdfParser::ReadXRefSubsection function in base/PdfParser.cpp in PoDoFo allows attackers to have unspecified impact via vectors related to moffsets.size.
Affected Software
1 affected component
Podofo Project Podofo
Remediation
Patch Available
Patch Available
Event History
Mar 16, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8981?
CVE-2015-8981 has a medium severity rating due to the potential for attackers to exploit a heap-based buffer overflow.
2
How do I fix CVE-2015-8981?
To fix CVE-2015-8981, update to the latest version of the PoDoFo library, which addresses the vulnerability.
3
What are the consequences of CVE-2015-8981?
Exploitation of CVE-2015-8981 can lead to application crashes or arbitrary code execution.
4
Which software is affected by CVE-2015-8981?
CVE-2015-8981 affects the PoDoFo library prior to the fixed version available in the latest updates.
5
Is CVE-2015-8981 being actively exploited?
While CVE-2015-8981 was disclosed in 2015, there have been no widely reported incidents of active exploitation.