Parsing a Type1 font embedded in a PDF.
Failure to check if next value is null.
This reintroduces an infinite loop fixed on PDFBOX-5624
As with the other Type1 font vulnerabilities, the POV was fairly easily generated with a custom harness and a custom seed corpus. However, neither of these resources were made available in the competition.
Further, finding the vulnerability is non-trivial.