The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file, because of ImageExtractor.cpp. Reference: https://sourceforge.net/p/podofo/tickets/75/
Created mingw-podofo tracking bugs for this issue: Affects: fedora-all [bug 1792345] Created podofo tracking bugs for this issue: Affects: epel-6 [bug 1792347] Affects: epel-7 [bug 1792348] Affects: fedora-all [bug 1792346]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.