Medium severity5.5NVD Advisory· Published Oct 1, 2019· Updated Jun 17, 2026
CVE-2019-17064
CVE-2019-17064
Description
Catalog.cc in Xpdf 4.02 has a NULL pointer dereference because Catalog.pageLabels is initialized too late in the Catalog constructor.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:glyphandcog:xpdfreader:4.02:*:*:*:*:*:*:*
- Xpdf/Xpdfdescription
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/154713/Xpdf-4.02-NULL-Pointer-Dereference.htmlnvdExploitThird Party AdvisoryVDB Entry
- forum.xpdfreader.com/viewtopic.phpnvdExploitPatchVendor Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D5PYIAP2RXTYD4Y4FYFIK5K644LMDJWX/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TMDB2CGUYDW2RENE2I2TT6QNFEEI2CNF/nvd
News mentions
0No linked articles in our index yet.