Medium severity5.5NVD Advisory· Published Oct 18, 2018· Updated Jun 17, 2026
CVE-2018-18458
CVE-2018-18458
Description
The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted pdf file, as demonstrated by pdftoppm.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- forum.xpdfreader.com/viewtopic.phpnvdThird Party Advisory
- github.com/TeamSeri0us/pocs/tree/master/xpdf/2018_10_16/pdftoppmnvdThird Party Advisory
News mentions
0No linked articles in our index yet.