Information on source package libpodofo

Available versions

ReleaseVersion
jessie0.9.0-1.2
stretch0.9.4-6
buster0.9.6+dfsg-5
bullseye0.9.7+dfsg-2
bookworm0.9.8+dfsg-3
trixie0.9.8+dfsg-3.1
sid0.9.8+dfsg-3.1

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2023-31568vulnerablevulnerablefixedfixedfixedfixedfixedPodofo v0.10.0 was discovered to contain a heap buffer overflow via th ...
CVE-2023-31567vulnerablevulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerablePodofo v0.10.0 was discovered to contain a heap buffer overflow via th ...
CVE-2023-31566vulnerablevulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerablePodofo v0.10.0 was discovered to contain a heap-use-after-free via the ...
CVE-2023-31556vulnerablevulnerablefixedfixedfixedfixedfixedpodofoinfo 0.10.0 was discovered to contain a segmentation violation v ...
CVE-2023-31555vulnerablevulnerablefixedfixedfixedfixedfixedpodofoinfo 0.10.0 was discovered to contain a segmentation violation v ...
CVE-2023-2241vulnerablevulnerablefixedfixedfixedfixedfixedA vulnerability, which was classified as critical, was found in PoDoFo ...
CVE-2021-30472vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableA flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in Pdf ...
CVE-2021-30471vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableA flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in Pd ...
CVE-2021-30470vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableA flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among ...
CVE-2021-30469vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableA flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecO ...
CVE-2020-18972vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableExposure of Sensitive Information to an Unauthorized Actor in PoDoFo v ...
CVE-2020-18971vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableStack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause ...
CVE-2019-20093vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)vulnerable (no DSA, ignored)fixedfixedfixedThe PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo ...
CVE-2019-10723vulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA, ignored)vulnerable (no DSA, ignored)fixedfixedfixedAn issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache class i ...
CVE-2019-9687vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedPoDoFo 0.9.6 has a heap-based buffer overflow in PdfString::ConvertUTF ...
CVE-2019-9199vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedPoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoD ...
CVE-2018-20751vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedAn issue was discovered in crop_page in PoDoFo 0.9.6. For a crafted PD ...
CVE-2018-19532vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedA NULL pointer dereference vulnerability exists in the function PdfTra ...
CVE-2018-14320vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThis vulnerability allows remote attackers to disclose sensitive infor ...
CVE-2018-12983vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedA stack-based buffer over-read in the PdfEncryptMD5Base::ComputeEncryp ...
CVE-2018-12982vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedInvalid memory read in the PoDoFo::PdfVariant::DelayedLoad() function ...
CVE-2018-11256vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedAn issue was discovered in PoDoFo 0.9.5. The function PdfDocument::App ...
CVE-2018-11255vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedAn issue was discovered in PoDoFo 0.9.5. The function PdfPage::GetPage ...
CVE-2018-11254vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedAn issue was discovered in PoDoFo 0.9.5. There is an Excessive Recursi ...
CVE-2018-8002vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableIn PoDoFo 0.9.5, there exists an infinite loop vulnerability in PdfPar ...
CVE-2018-8001vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there exists a heap-based buffer over-read vulnerabil ...
CVE-2018-6352vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there is an Excessive Iteration in the PdfParser::Rea ...
CVE-2018-5783vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PoD ...
CVE-2018-5309vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there is an integer overflow in the PdfObjectStreamPa ...
CVE-2018-5308vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedPoDoFo 0.9.5 does not properly validate memcpy arguments in the PdfMem ...
CVE-2018-5296vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there is an uncontrolled memory allocation in the Pdf ...
CVE-2018-5295vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedIn PoDoFo 0.9.5, there is an integer overflow in the PdfXRefStreamPars ...
CVE-2017-8787vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe PoDoFo::PdfXRefStreamParserObject::ReadXRefStreamEntry function in ...
CVE-2017-8378vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedHeap-based buffer overflow in the PdfParser::ReadObjects function in b ...
CVE-2017-8054vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 ...
CVE-2017-8053vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedPoDoFo 0.9.5 allows denial of service (infinite recursion and stack co ...
CVE-2017-7994vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe function TextExtractor::ExtractText in TextExtractor.cpp:77 in PoD ...
CVE-2017-7383vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PdfFontFactory.cpp:195:62 code in PoDoFo 0.9.5 allows remote attac ...
CVE-2017-7382vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PdfFontFactory.cpp:200:88 code in PoDoFo 0.9.5 allows remote attac ...
CVE-2017-7381vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe doc/PdfPage.cpp:609:23 code in PoDoFo 0.9.5 allows remote attacker ...
CVE-2017-7380vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe doc/PdfPage.cpp:614:20 code in PoDoFo 0.9.5 allows remote attacker ...
CVE-2017-7379vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PoDoFo::PdfSimpleEncoding::ConvertToEncoding function in PdfEncodi ...
CVE-2017-7378vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PoDoFo::PdfPainter::ExpandTabs function in PdfPainter.cpp in PoDoF ...
CVE-2017-6849vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe PoDoFo::PdfColorGray::~PdfColorGray function in PdfColor.cpp in Po ...
CVE-2017-6848vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PoDoFo::PdfXObject::PdfXObject function in PdfXObject.cpp in PoDoF ...
CVE-2017-6847vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo ...
CVE-2017-6846vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe GraphicsStack::TGraphicsStackElement::SetNonStrokingColorSpace fun ...
CVE-2017-6845vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe PoDoFo::PdfColor::operator function in PdfColor.cpp in PoDoFo 0.9. ...
CVE-2017-6844vulnerable (no DSA)fixedfixedfixedfixedfixedfixedBuffer overflow in the PoDoFo::PdfParser::ReadXRefSubsection function ...
CVE-2017-6843vulnerable (no DSA)fixedfixedfixedfixedfixedfixedHeap-based buffer overflow in the PoDoFo::PdfVariant::DelayedLoad func ...
CVE-2017-6842vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe ColorChanger::GetColorFromStack function in colorchanger.cpp in Po ...
CVE-2017-6841vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe GraphicsStack::TGraphicsStackElement::~TGraphicsStackElement funct ...
CVE-2017-6840vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe ColorChanger::GetColorFromStack function in colorchanger.cpp in Po ...
CVE-2017-5886vulnerable (no DSA)fixedfixedfixedfixedfixedfixedHeap-based buffer overflow in the PoDoFo::PdfTokenizer::GetNextToken f ...
CVE-2017-5855vulnerable (no DSA)fixedfixedfixedfixedfixedfixedThe PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in ...
CVE-2017-5854vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedbase/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to ca ...
CVE-2017-5853vulnerable (no DSA)fixedfixedfixedfixedfixedfixedInteger overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote a ...
CVE-2017-5852vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedThe PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVar ...
CVE-2015-8981vulnerable (no DSA)fixedfixedfixedfixedfixedfixedHeap-based buffer overflow in the PdfParser::ReadXRefSubsection functi ...

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2018-20797vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableAn issue was discovered in PoDoFo 0.9.6. There is an attempted excessi ...

Security announcements

DSA / DLADescription
DLA-968-1libpodofo - security update
DLA-929-1libpodofo - security update

Search for package or bug name: Reporting problems