In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-07-04T21:07:06

Updated: 2024-08-04T23:49:24.575Z

Reserved: 2019-07-04T00:00:00

Link: CVE-2019-13289

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-07-04T22:15:10.743

Modified: 2019-07-09T17:59:39.503

Link: CVE-2019-13289

cve-icon Redhat

No data.