A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdfwritenames in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
{ "vanir_signatures": [ { "signature_version": "v1", "signature_type": "Function", "target": { "file": "htmldoc/ps-pdf.cxx", "function": "pdf_write_names" }, "id": "CVE-2022-28085-322ea87c", "digest": { "length": 1284.0, "function_hash": "25789124432837364923987592691643841617" }, "deprecated": false, "source": "https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "htmldoc/ps-pdf.cxx" }, "id": "CVE-2022-28085-7cc2c32c", "digest": { "line_hashes": [ "83231825606128046903467581598764065347", "119108905711847759334100117435727871152", "193643972328961041793432327525559741087" ], "threshold": 0.9 }, "deprecated": false, "source": "https://github.com/michaelrsweet/htmldoc/commit/46c8ec2b9bccb8ccabff52d998c5eee77a228348" } ] }