A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdfwritenames in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
[
{
"id": "CVE-2022-28085-322ea87c",
"digest": {
"length": 1284.0,
"function_hash": "25789124432837364923987592691643841617"
},
"signature_type": "Function",
"source": "https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "htmldoc/ps-pdf.cxx",
"function": "pdf_write_names"
}
},
{
"id": "CVE-2022-28085-7cc2c32c",
"digest": {
"threshold": 0.9,
"line_hashes": [
"83231825606128046903467581598764065347",
"119108905711847759334100117435727871152",
"193643972328961041793432327525559741087"
]
},
"signature_type": "Line",
"source": "https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "htmldoc/ps-pdf.cxx"
}
}
]