podofo is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to cause a denial-of-service condition.
podofo 0.9.5 is vulnerable; other versions may also be affected.
Information
Exploit
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
References:
- PoDoFo Homepage (sourceforge)
- icepng/PoC (icepng)
- PoDoFo 0.9.5 NULL pointer dereference (icepng)