A large loop in JBIG2Stream::readSymbolDictSeg in xpdf 4.00 allows an attacker to cause denial of service via a specific file due to inappropriate decoding.
The product does not properly encode or decode the data, resulting in unexpected values.
Link | Tags |
---|---|
https://forum.xpdfreader.com/viewtopic.php?f=3&t=607 | issue tracking vendor advisory |