#VU36738 Input validation error in xpdf - CVE-2018-16369
Published: September 3, 2018 / Updated: August 8, 2020
xpdf
Glyph & Cog
Description
The vulnerability allows remote attackers to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can cause a denial of service (stack consumption) via a crafted pdf file, related to AcroForm::scanField, as demonstrated by pdftohtml.