An issue was found in PoDoFo 0.9.6. A NULL pointer dereference vulnerability exists in the function PdfTranslator::setTarget() in pdftranslator.cpp while creating the PdfXObject, as demonstrated by podofoimpose. It allows an attacker to cause Denial of Service. References: https://sourceforge.net/p/podofo/tickets/32/ https://research.loginsoft.com/bugs/null-pointer-dereference-vulnerability-in-pdftranslatorsettarget-podofo-0-9-6/
Created podofo tracking bugs for this issue: Affects: epel-all [bug 1656193] Affects: fedora-all [bug 1656194]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.