First published: Thu Apr 08 2021(Updated: )
A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEncrypt.cpp is possible because of a improper check of the keyLength value.
Credit: patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
PoDoFo | =0.9.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-30472 is classified as a high severity vulnerability due to the potential for stack-based buffer overflow.
To mitigate CVE-2021-30472, upgrade PoDoFo to the latest version that addresses this buffer overflow issue.
CVE-2021-30472 affects PoDoFo version 0.9.7.
CVE-2021-30472 is a stack-based buffer overflow vulnerability.
CVE-2021-30472 was published in 2021.