NULL Pointer Dereference Vulnerability in PoDoFo PDF Library

NULL Pointer Dereference Vulnerability in PoDoFo PDF Library

CVE-2019-20093 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file, because of ImageExtractor.cpp.

Learn more about our Web Application Penetration Testing UK.