← Back to CVE List

CVE-2018-20481

Published: 2018-12-26T04:29Z
Last Modified: 2024-11-21T04:01Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
XRef::getEntry in XRef.cc in Poppler 0.72.0 mishandles unallocated XRef entries, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PDF document, when XRefEntry::setFlag in XRef.h is called from Parser::makeStream in Parser.cc. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt