Security Advisory

CVE-2017-11625

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-07-25 23:00:00
Last updated 2024-08-05 18:12:40
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, which allows attackers to cause a denial of service via a crafted file, related to the QPDF::resolveObjectsInStream function in QPDF.cc, aka an "infinite loop."