Candidate: CVE-2019-14267 PublicDate: 2019-07-29 16:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14267 https://github.com/enferex/pdfresurrect/commit/4ea7a6f4f51d0440da651d099247e2273f811dbc http://packetstormsecurity.com/files/153767/pdfresurrect-0.15-Buffer-Overflow.html https://github.com/enferex/pdfresurrect/commits/master Description: PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [7.8 HIGH] Patches_pdfresurrect: upstream: https://github.com/enferex/pdfresurrect/commit/4ea7a6f4f51d0440da651d099247e2273f811dbc upstream_pdfresurrect: released (0.16) precise/esm_pdfresurrect: DNE trusty_pdfresurrect: ignored (out of standard support) trusty/esm_pdfresurrect: DNE xenial_pdfresurrect: ignored (end of standard support, was needed) bionic_pdfresurrect: needed disco_pdfresurrect: ignored (reached end-of-life) eoan_pdfresurrect: released (0.16-1) focal_pdfresurrect: not-affected (0.19-1) groovy_pdfresurrect: not-affected hirsute_pdfresurrect: not-affected impish_pdfresurrect: not-affected (0.22-1) jammy_pdfresurrect: not-affected (0.22-2) devel_pdfresurrect: not-affected (0.22-2)