Описание
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the mutool clean utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the strip_outline() function enters infinite recursion
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-apps/bionic | released | 1.12.0+ds1-1ubuntu0.1~esm2 |
| esm-apps/focal | released | 1.16.1+ds1-1ubuntu1+esm2 |
| esm-apps/jammy | released | 1.19.0+ds1-2ubuntu0.1~esm1 |
| esm-apps/noble | released | 1.23.10+ds1-1ubuntu0.1~esm1 |
| esm-apps/xenial | not-affected | code not present |
| jammy | needed | |
| noble | needed | |
| plucky | released | 1.25.1+ds1-5ubuntu0.1 |
| questing | not-affected | 1.25.1+ds1-7 |
Показывать по
Ссылки на источники
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the `strip_outline()` function enters infinite recursion
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to c ...
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the `strip_outline()` function enters infinite recursion
Уязвимость утилиты mutool clean программы просмотра PDF-файлов MuPDF, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.5 Medium
CVSS3