Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
BID:21259
Info
Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
| Bugtraq ID: | 21259 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 23 2006 12:00AM |
| Updated: | Nov 26 2006 05:25AM |
| Credit: | The vendor disclosed this vulnerability. |
| Vulnerable: |
Takeshi Kanno Haru Free PDF Library 2.0.7 Takeshi Kanno Haru Free PDF Library 2.0.6 Takeshi Kanno Haru Free PDF Library 2.0.5 Takeshi Kanno Haru Free PDF Library 2.0.4 Takeshi Kanno Haru Free PDF Library 2.0.3 Takeshi Kanno Haru Free PDF Library 2.0.2 Takeshi Kanno Haru Free PDF Library 2.0.1 Takeshi Kanno Haru Free PDF Library 2.0 |
| Not Vulnerable: |
Takeshi Kanno Haru Free PDF Library 2.0.8 |
Discussion
Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
The Haru Free PDF Library is prone to a buffer-overflow vulnerability because it fails to perform proper boundary checks of user-supplied input before copying it to an insufficiently sized memory buffer.
Successfully exploiting this issue may result in crashing applications that use the library. Due to the nature of this issue, code execution may also be possible, but this has not been confirmed.
Haru Free PDF Library 2.0.7 and prior versions are vulnerable to this issue.
The Haru Free PDF Library is prone to a buffer-overflow vulnerability because it fails to perform proper boundary checks of user-supplied input before copying it to an insufficiently sized memory buffer.
Successfully exploiting this issue may result in crashing applications that use the library. Due to the nature of this issue, code execution may also be possible, but this has not been confirmed.
Haru Free PDF Library 2.0.7 and prior versions are vulnerable to this issue.
Exploit / POC
Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution / Fix
Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
Solution:
The vendor has released version 2.0.8 to address this issue.
Takeshi Kanno Haru Free PDF Library 2.0
Takeshi Kanno Haru Free PDF Library 2.0.1
Takeshi Kanno Haru Free PDF Library 2.0.2
Takeshi Kanno Haru Free PDF Library 2.0.3
Takeshi Kanno Haru Free PDF Library 2.0.4
Takeshi Kanno Haru Free PDF Library 2.0.5
Takeshi Kanno Haru Free PDF Library 2.0.6
Takeshi Kanno Haru Free PDF Library 2.0.7
Solution:
The vendor has released version 2.0.8 to address this issue.
Takeshi Kanno Haru Free PDF Library 2.0
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.1
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.2
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.3
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.4
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.5
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.6
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
Takeshi Kanno Haru Free PDF Library 2.0.7
-
Takeshi Kanno libharu_2_0_8.tgz
http://downloads.sourceforge.net/libharu/libharu_2_0_8.tgz?modtime=116 4290689&big_mirror=0
References
Haru Free PDF Library HPDF_Page_Circle Buffer Overflow Vulnerability
References:
References:
- [ 1597538 ] Buffer overflow in HPDF_Page_Circle (Takeshi Kanno)
- Haru Free PDF Library Home Page (Takeshi Kanno)
- Release Name: 2.0.8 (Takeshi Kanno)