Red Hat Bugzilla – Bug 1545272
CVE-2017-18183 qpdf: Infinite Loop in QPDFWriter::enqueueObject in libqpdf/QPDFWriter.cc
Last modified: 2018-03-29 18:05:13 EDT
A flaw was discovered in QPDF before 7.0.0. There is an infinite recursion loop in the QPDFWriter::enqueueObject() function in libqpdf/QPDFWriter.cc. This allows an attacker to cause a denial of service via a crafted file. External References: https://github.com/qpdf/qpdf/issues/143 Upstream Patch: https://github.com/qpdf/qpdf/commit/8249a26d69f72b9