CVE-2015-9252

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
13/02/2018
Last modified:
08/05/2018

Description

An issue was discovered in QPDF before 7.0.0. Endless recursion causes stack exhaustion in QPDFTokenizer::resolveLiteral() in QPDFTokenizer.cc, related to the QPDF::resolve function in QPDF.cc.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qpdf_project:qpdf:*:*:*:*:*:*:*:* 7.0.0 (excluding)