Infinite loop in MuPDF - CVE-2018-5686
Published: May 10, 2018
Vulnerability identifier: #VU12557
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-5686
CWE-ID: CWE-835
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the traget system.
The weakness exists in the pdf_parse_array function in pdf/pdf-parse.c due to infinite loop because EOF is not considered. A remote attacker can trick the victim into opening a specially crafted pdf file and cause the service to crash.
The weakness exists in the pdf_parse_array function in pdf/pdf-parse.c due to infinite loop because EOF is not considered. A remote attacker can trick the victim into opening a specially crafted pdf file and cause the service to crash.
Affected software
MuPDF
Arch Linux
Debian Linux
Fedora
mupdf (Alpine package)
mupdf
Arch Linux
Debian Linux
Fedora
mupdf (Alpine package)
mupdf
How to mitigate CVE-2018-5686
Install update from vendor's website.
mupdf (Alpine package) - update to 1.13.0-r0
mupdf - addressed in versions 1.12.0-2.fc26, 1.12.0-2.fc27
mupdf - addressed in versions 1.12.0-2.fc26, 1.12.0-2.fc27
External References
Related Security Bulletins
- Arch Linux update for mupdf
- Arch Linux update for mupdf-gl
- Arch Linux update for libmupdf
- Arch Linux update for mupdf-tools
- Arch Linux update for llpp
- Arch Linux update for zathura-pdf-mupdf
- Debian update for mupdf
- Infinite loop in mupdf (Alpine package)
- Fedora 27 update for mupdf
- Fedora 26 update for mupdf