First published: Mon Jul 29 2019(Updated: )
PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pdfresurrect Project Pdfresurrect | =0.15 | |
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 | |
Fedoraproject Fedora | =31 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for PDFResurrect 0.15 is CVE-2019-14267.
The severity of CVE-2019-14267 is high with a CVSS score of 7.8.
The affected software version for CVE-2019-14267 is PDFResurrect 0.15.
A crafted PDF file can trigger the buffer overflow in PDFResurrect 0.15 by exploiting mishandling of data associated with startxref and %%EOF.
Yes, there are references available for CVE-2019-14267. You can find them at the following links: [PacketStormSecurity](http://packetstormsecurity.com/files/153767/pdfresurrect-0.15-Buffer-Overflow.html), [GitHub Commits](https://github.com/enferex/pdfresurrect/commits/master), [GitHub SnappyJack](https://github.com/snappyJack/pdfresurrect_CVE-2019-14267).