First published: Mon Apr 19 2021(Updated: )
A flaw was found in PDFResurrect in version 0.22b. There is a infinite loop in get_xref_linear_skipped() in pdf.c via a crafted PDF file. Reference: <a href="https://github.com/enferex/pdfresurrect/issues/17">https://github.com/enferex/pdfresurrect/issues/17</a> Upstream patch: <a href="https://github.com/enferex/pdfresurrect/commit/7e35d1806e111fd28610ccc86bb33f54792ac370">https://github.com/enferex/pdfresurrect/commit/7e35d1806e111fd28610ccc86bb33f54792ac370</a>
Credit: patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pdfresurrect Project Pdfresurrect | =0.22b | |
redhat/PDFResurrect | <0.23 | 0.23 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.