Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root problem was a bounds check that was being optimized away by modern compilers.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.xpdfreader.com/security-bug/CVE-2024-4141.html | vendor advisory |