First published: Mon Mar 11 2019(Updated: )
PoDoFo 0.9.6 has a heap-based buffer overflow in PdfString::ConvertUTF16toUTF8 in base/PdfString.cpp.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PoDoFo | =0.9.6 | |
Fedora | =29 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9687 is classified as a high severity vulnerability due to its potential to cause a heap-based buffer overflow.
To fix CVE-2019-9687, update to the latest version of PoDoFo or apply any available patches that address this vulnerability.
CVE-2019-9687 specifically affects PoDoFo version 0.9.6 and Fedora version 29.
CVE-2019-9687 can be exploited remotely, making it critical to patch affected systems as soon as possible.
CVE-2019-9687 impacts applications that utilize PoDoFo to handle PDF files, particularly in how they process strings.