Out-of-Bounds Array Write Vulnerability in Xpdf 4.05 and Earlier
CVE-2025-2574
2.1LOW
What is CVE-2025-2574?
An out-of-bounds array write vulnerability exists in Xpdf versions 4.05 and earlier, caused by improper handling of integer overflow within the PostScript function interpreter. This flaw can potentially allow attackers to execute arbitrary code or cause a denial of service, making it a significant concern for users of the affected versions. Users are advised to update to the latest version to mitigate potential risks associated with this vulnerability.
Affected Version(s)
Xpdf all Version <= 4.05
