Vulnerability Description
In Snowtide PDFxStream before 3.7.1 (for Java), a crafted PDF file can trigger an extremely long running computation because of page-tree mishandling.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Snowtide | Pdfxstream | < 3.7.1 |
References
- http://downloads.snowtide.com/CHANGELOG.htmlVendor Advisory
- http://downloads.snowtide.com/CHANGELOG.htmlVendor Advisory
FAQ
What is CVE-2019-17063?
CVE-2019-17063 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In Snowtide PDFxStream before 3.7.1 (for Java), a crafted PDF file can trigger an extremely long running computation because of page-tree mishandling.
How severe is CVE-2019-17063?
CVE-2019-17063 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-17063?
Check the references section above for vendor advisories and patch information. Affected products include: Snowtide Pdfxstream.