CVE-2017-6843: Buffer Overflow
Published Mar 15, 2017
·Updated
Heap-based buffer overflow in the PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.
Affected Software
1 affected component
Podofo Project Podofo=0.9.4
Event History
Mar 15, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·02:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-6843?
CVE-2017-6843 has a medium severity rating due to the potential for exploitation via crafted files.
2
How do I fix CVE-2017-6843?
To fix CVE-2017-6843, you should update to a patched version of PoDoFo that addresses this buffer overflow vulnerability.
3
What impact can CVE-2017-6843 have on my system?
Exploiting CVE-2017-6843 may allow remote attackers to cause a denial of service or execute arbitrary code.
4
Which versions of PoDoFo are affected by CVE-2017-6843?
CVE-2017-6843 specifically affects PoDoFo version 0.9.4.
5
Is CVE-2017-6843 a known vulnerability?
Yes, CVE-2017-6843 is a recognized vulnerability that has been documented and reported in the security community.