Search Results (Refine Search)
- CPE Product Version: cpe:/a:qpdf_project:qpdf:7.1.1
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2018-9918 |
libqpdf.a in QPDF through 8.0.2 mishandles certain "expected dictionary key but found non-name object" cases, allowing remote attackers to cause a denial of service (stack exhaustion), related to the QPDFObjectHandle and QPDF_Dictionary classes, because nesting in direct objects is not restricted. Published: April 10, 2018; 2:29:00 PM -0400 |
V3.0: 7.8 HIGH V2.0: 6.8 MEDIUM |