Out-of-bounds array write vulnerability in Xpdf 4.05 and earlier
CVE-2024-4141
5.5MEDIUM
What is CVE-2024-4141?
A vulnerability exists in Xpdf that allows an out-of-bounds array write due to improper handling of invalid character codes in Type 1 fonts. The issue arises from a bounds check that is eliminated by advanced compiler optimizations, leading to potential exploitation by attackers. Successful exploitation can result in unpredictable behavior or crash of the application, thereby compromising the integrity and availability of the PDF processing functionalities.
