CVE-2020-18971: Buffer Overflow
Published Aug 25, 2021
·Updated
Last updated 20 January 2025
Other sources
Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'.
Affected Software
2 affected components
debian/libpodofo<=0.9.7+dfsg-2, <=0.9.8+dfsg-3, <=0.9.8+dfsg-3.2
Podofo Project Podofo=0.9.6
Event History
Aug 25, 2021
CVE Published
via MITRE·03:54 PM
Data Sourced
via MITRE·03:54 PM
Description
Jan 20, 2025
Data Sourced
via Launchpad·05:23 AM
Description
Jan 24, 2025
Data Sourced
via Ubuntu·05:23 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-18971?
CVE-2020-18971 has a high severity rating due to its potential for causing denial of service attacks.
2
How do I fix CVE-2020-18971?
To fix CVE-2020-18971, update PoDoFo to version 0.9.8 or later.
3
Which versions of PoDoFo are affected by CVE-2020-18971?
CVE-2020-18971 affects PoDoFo version 0.9.6 and earlier versions.
4
What type of vulnerability is CVE-2020-18971?
CVE-2020-18971 is classified as a stack-based buffer overflow vulnerability.
5
Can CVE-2020-18971 lead to data breaches?
While CVE-2020-18971 primarily leads to denial of service, it could potentially be exploited for further attacks if not mitigated.