Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1000040

Опубликовано: 24 мая 2018
Источник: debian

Описание

In Artifex MuPDF 1.12.0 and earlier, multiple use of uninitialized value bugs in the PDF parser could allow an attacker to cause a denial of service (crash) or influence program flow via a crafted file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mupdffixed1.13.0+ds1-1package
mupdfnot-affectedjessiepackage
mupdfnot-affectedwheezypackage

Примечания

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5596

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5600

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5603

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5609

  • https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5610

  • https://git.ghostscript.com/?p=mupdf.git;a=commitdiff;h=83d4dae44c71816c084a635550acc1a51529b881;hp=f597300439e62f5e921f0d7b1e880b5c1a1f1607

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

In Artifex MuPDF 1.12.0 and earlier, multiple use of uninitialized value bugs in the PDF parser could allow an attacker to cause a denial of service (crash) or influence program flow via a crafted file.

CVSS3: 5.5
nvd
больше 7 лет назад

In Artifex MuPDF 1.12.0 and earlier, multiple use of uninitialized value bugs in the PDF parser could allow an attacker to cause a denial of service (crash) or influence program flow via a crafted file.

CVSS3: 5.5
github
больше 3 лет назад

In MuPDF 1.12.0 and earlier, multiple use of uninitialized value bugs in the PDF parser could allow an attacker to cause a denial of service (crash) or influence program flow via a crafted file.