CVE-2023-31555: Medium severity podofo vulnerability
Published May 10, 2023
·Updated
podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad.
Affected Software
1 affected component
Podofo Project Podofo=0.10.0
Remediation
Patch Available
Event History
May 10, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-31555?
CVE-2023-31555 is classified as a moderate severity vulnerability due to its potential to cause a segmentation fault.
2
How do I fix CVE-2023-31555?
To fix CVE-2023-31555, users should upgrade to a patched version of PoDoFo that resolves the segmentation violation.
3
What software is affected by CVE-2023-31555?
CVE-2023-31555 specifically affects version 0.10.0 of the PoDoFo library.
4
What type of vulnerability is CVE-2023-31555?
CVE-2023-31555 is a denial of service vulnerability caused by a segmentation violation.
5
Can CVE-2023-31555 be exploited remotely?
CVE-2023-31555 may be exploited to cause application crashes, but it does not allow remote code execution.