CVE Database
/

CVE-2024-7868

Back to search

CVE-2024-7868

Published: Aug 15, 2024

Modified: Oct 6, 2025

PUBLISHED

Description

In Xpdf 4.05 (and earlier), invalid header info in a DCT (JPEG) stream can lead to an uninitialized variable in the DCT decoder. The proof-of-concept PDF file causes a segfault attempting to read from an invalid address.

VendorProductVersions

Xpdf

Xpdf

affected
0 - <= 4.05

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now