Vulnerability CVE-2022-27135


Published: 2022-04-25

Description:
xpdf 4.03 has heap buffer overflow in the function readXRefTable located in XRef.cc. An attacker can exploit this bug to cause a Denial of Service (Segmentation fault) or other unspecified effects by sending a crafted PDF file to the pdftoppm binary.

 References:
https://github.com/verf1sh/Poc/blob/master/poc_ppm
https://forum.xpdfreader.com/viewtopic.php?f=3&t=42232
https://github.com/verf1sh/Poc/blob/master/pic_ppm.png

Copyright 2026, cxsecurity.com

 

Back to Top