Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-10289

Опубликовано: 22 апр. 2018
Источник: debian

Описание

In MuPDF 1.13.0, there is an infinite loop in the fz_skip_space function of the pdf/pdf-xref.c file. A remote adversary could leverage this vulnerability to cause a denial of service via a crafted pdf file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mupdffixed1.13.0+ds1-3package
mupdfnot-affectedjessiepackage
mupdfnot-affectedwheezypackage

Примечания

  • https://bugs.ghostscript.com/show_bug.cgi?id=699271

  • Introduced in https://git.ghostscript.com/?p=mupdf.git;a=commit;h=1acaaf2b40614401378aa697de47093be9f390fe (1.8)

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 8 лет назад

In MuPDF 1.13.0, there is an infinite loop in the fz_skip_space function of the pdf/pdf-xref.c file. A remote adversary could leverage this vulnerability to cause a denial of service via a crafted pdf file.

CVSS3: 5.5
nvd
почти 8 лет назад

In MuPDF 1.13.0, there is an infinite loop in the fz_skip_space function of the pdf/pdf-xref.c file. A remote adversary could leverage this vulnerability to cause a denial of service via a crafted pdf file.

CVSS3: 5.5
github
больше 3 лет назад

In MuPDF 1.13.0, there is an infinite loop in the fz_skip_space function of the pdf/pdf-xref.c file. A remote adversary could leverage this vulnerability to cause a denial of service via a crafted pdf file.