cve/2018/CVE-2018-20662.md
2024-06-09 00:33:16 +00:00

883 B

CVE-2018-20662

Description

In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

POC

Reference

Github