An issue was discovered in Xpdf 4.04. There is a crash in convertToType0 in fofi/FoFiType1C.cc, a different vulnerability than CVE-2022-38928.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42325&sid=7b08ba9a518a99ce3c5ff40e53fc6421 | exploit vendor advisory |
https://forum.xpdfreader.com/viewtopic.php?f=1&t=42344 | vendor advisory |