ZeroHour

CVE-2018-1000039

PoC ×4
CVSS 3.1
6.3 medium
EPSS
2%p78
Published
()
Modified
Description

In Artifex MuPDF 1.12.0 and earlier, multiple heap use after free bugs in the PDF parser could allow an attacker to execute arbitrary code, read memory, or cause a denial of service via a crafted file.

Vendors
artifex
Products
mupdf
Weakness
CWE-416
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.