Security Advisory

CVE-2019-9199

8.8
HIGH

Vulnerability Description

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by sending a crafted PDF file to the podofoimpose binary. It allows an attacker to cause Denial of Service (Segmentation fault) or possibly have unspecified other impact.
Published Date February 26, 2019
Official Source NIST NVD Advisory