Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g6xf-xq8f-56f4

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-win32 package, as used in SumatraPDF 0.9.3 and earlier, allows remote attackers to execute arbitrary code via a crafted PDF file. NOTE: some of these details are obtained from third party information.

Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-win32 package, as used in SumatraPDF 0.9.3 and earlier, allows remote attackers to execute arbitrary code via a crafted PDF file. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 91%
0.0704
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 5.4
nvd
больше 16 лет назад

Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-win32 package, as used in SumatraPDF 0.9.3 and earlier, allows remote attackers to execute arbitrary code via a crafted PDF file. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 91%
0.0704
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-119