Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-8728

Опубликовано: 24 апр. 2018
Источник: debian
EPSS Низкий

Описание

An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A specially crafted PDF file can cause a out of bounds write resulting in heap metadata and sensitive process memory corruption leading to potential code execution. Victim needs to open the specially crafted file in a vulnerable reader in order to trigger this vulnerability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mupdfnot-affectedpackage

Примечания

  • https://www.talosintelligence.com/vulnerability_reports/TALOS-2016-0242%20

EPSS

Процентиль: 69%
0.00586
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A specially crafted PDF file can cause a out of bounds write resulting in heap metadata and sensitive process memory corruption leading to potential code execution. Victim needs to open the specially crafted file in a vulnerable reader in order to trigger this vulnerability.

CVSS3: 7.8
nvd
почти 8 лет назад

An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A specially crafted PDF file can cause a out of bounds write resulting in heap metadata and sensitive process memory corruption leading to potential code execution. Victim needs to open the specially crafted file in a vulnerable reader in order to trigger this vulnerability.

CVSS3: 7.8
github
больше 3 лет назад

An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A specially crafted PDF file can cause a out of bounds write resulting in heap metadata and sensitive process memory corruption leading to potential code execution. Victim needs to open the specially crafted file in a vulnerable reader in order to trigger this vulnerability.

suse-cvrf
около 8 лет назад

Security update for mupdf

EPSS

Процентиль: 69%
0.00586
Низкий