Back to Database
Status published
Low
CVE-2025-2574
Out-of-bounds array write in Xpdf 4.05 due to incorrect integer overflow checking
Vulnerability Description
Out-of-bounds array write in Xpdf 4.05 and earlier, due to incorrect integer overflow checking in the PostScript function interpreter code.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-2574
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Erik Viken
More from Xpdf
View All →CVE-2025-3154
Out-of-bounds array write due to invalid VerticesPerRow in Xpdf 4.05
Low
2.1
CVE-2025-11896
Stack overflow in Xpdf 4.05 due to object loop in PDF CMap
Low
2.1
CVE-2024-7868
Uninitialized variable in Xpdf 4.05 due to invalid JPEG header
Low
2.1
CVE-2024-7867
Integer overflow and divide-by-zero in Xpdf 4.05 due to bogus page box coordinates
Low
2.1
CVE-2024-7866
Stack overflow in Xpdf 4.05 due to object loop in PDF pattern
Low
2.1
Affected Vendor
Xpdf
View all reports →Affected Software
Xpdf
Vulnerable Versions:
Version
Timeline
Official Publish:
March 20th, 2025
Last Modified:
October 6th, 2025
Added to House:
July 22nd, 2026