An issue was discovered in Xpdf 4.04. There is a crash in gfseek(_IO_FILE*, long, int) in goo/gfile.cc.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.xpdfreader.com/download.html | patch vendor advisory |
https://forum.xpdfreader.com/viewtopic.php?f=1&t=42340&p=43928&hilit=gfseek#p43928 | vendor advisory exploit |