Security Advisory

CVE-2022-38784

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-30 02:58:33
Last updated 2024-09-17 03:54:54
Assigner mitre
State PUBLISHED

Description

Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIGStream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2022-38171 in Xpdf.