PT-2018-12822 · Pdf2Json · Pdf2Json
Fouzhe
·
Published
2018-08-05
·
Updated
2018-10-04
·
CVE-2018-14946
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
PDF2JSON version 0.69
Description
The issue is related to Mismatched Memory Management Routines, specifically the use of malloc versus operator delete in the HtmlString class within ImgOutputDev.cc.
Recommendations
For PDF2JSON version 0.69, update to a version where the memory management issue in the HtmlString class is resolved, or consider applying a patch that fixes the Mismatched Memory Management Routines if available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pdf2Json