An issue was discovered in xpdf 4.00. A NULL pointer dereference in readCodestream allows an attacker to cause denial of service via a JPX image with zero components.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://forum.xpdfreader.com/viewtopic.php?f=3&t=613 | vendor advisory |