Heap-Buffer Overflow in XPDF Product from Vendor XPDF
CVE-2022-38229
7.8HIGH
What is CVE-2022-38229?
A heap-buffer overflow has been identified in the XPDF product due to an oversight in the DCTStream::readHuffSym function. This vulnerability arises from improper handling of the DCTHuffTable structure during the reading process, which can lead to potential arbitrary code execution and compromise the security of the affected system. Users are advised to review their installations and apply necessary updates to mitigate the risks associated with this vulnerability.
