Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.
| Software | From | Fixed in |
|---|---|---|
| xpdf / xpdf | 3.0.1_pl1 | 3.0.1_pl1.x |