Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a different vulnerability than CVE-2019-9877.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://forum.xpdfreader.com/viewtopic.php?f=3&t=41885 | exploit vendor advisory |