REDHAT-BUG-1947436: Medium severity PoDoFo PoDoFo vulnerability
A flaw was found in PoDoFo. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
Reference: https://sourceforge.net/p/podofo/tickets/130/
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1947436?
The severity of REDHAT-BUG-1947436 is classified as high due to the risk of stack overflow.
How do I fix REDHAT-BUG-1947436?
To fix REDHAT-BUG-1947436, upgrade to the latest patched version of PoDoFo that addresses the uncontrolled recursion issue.
What components are affected by REDHAT-BUG-1947436?
REDHAT-BUG-1947436 affects the PdfTokenizer functions in the PoDoFo library.
What potential impacts does REDHAT-BUG-1947436 have?
The potential impact of REDHAT-BUG-1947436 includes application crashes and denial of service due to stack overflow.
Is there a workaround for REDHAT-BUG-1947436?
Currently, there are no documented workarounds for REDHAT-BUG-1947436 other than applying updates to the software.