CVE-2024-4141

Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root problem was a bounds check that was being optimized away by modern compilers.
Configurations

Configuration 1 (hide)

cpe:2.3:a:xpdfreader:xpdf:*:*:*:*:*:*:*:*

History

29 Jan 2025, 16:13

Type Values Removed Values Added
References () https://www.xpdfreader.com/security-bug/CVE-2024-4141.html - () https://www.xpdfreader.com/security-bug/CVE-2024-4141.html - Vendor Advisory
CPE cpe:2.3:a:xpdfreader:xpdf:*:*:*:*:*:*:*:*
First Time Xpdfreader
Xpdfreader xpdf

21 Nov 2024, 09:42

Type Values Removed Values Added
Summary
  • (es) Escritura de matriz fuera de los límites en Xpdf 4.05 y versiones anteriores, provocada por un código de carácter no válido en una fuente Tipo 1. La raíz del problema era una verificación de los límites que los compiladores modernos estaban optimizando.
References () https://www.xpdfreader.com/security-bug/CVE-2024-4141.html - () https://www.xpdfreader.com/security-bug/CVE-2024-4141.html -

24 Apr 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-24 19:15

Updated : 2025-01-29 16:13


NVD link : CVE-2024-4141

Mitre link : CVE-2024-4141

CVE.ORG link : CVE-2024-4141


JSON object : View

Products Affected

xpdfreader

  • xpdf
CWE
CWE-787

Out-of-bounds Write