heap buffer overflow in the function data_dup()
Tested on windows, looks fixed.
We also tested it against the latest trunk r1970 & are able to reproduce.
Null pointer dereference vulnerability in PoDoFo::Impose::PdfTranslator::setSource()
invalid memory address in adv_png_unfilter_8( )
null pointer dereference in be_uint32_read()
We now confirm that the issue has been fixed in svn r1954.
We have tested in GCC version 5.5.0 and able to reproduce the issue by configuring full Library. I missed the point here, do you mean that we need to compile with older versions of GCC ? Curious to know, can't this issue be fixed by having a NULL check against 'pPage', which solves the issue though the user is using latest GCC version?