An issue exists in QPDF prior to 7.0.0. There is a large heap-based out-of-bounds read in the Pl_Buffer::write function in Pl_Buffer.cc. It is caused by an integer overflow in the PNG filter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qpdf project qpdf |