Stack-based buffer overflow in MuPDF - CVE-2017-6060
Published: June 6, 2017 / Updated: April 7, 2020
Vulnerability identifier: #VU6922
CSH Severity: Low
CVSS v4.0:
CVE-ID: CVE-2017-6060
CWE-ID: CWE-121
Exploitation vector: Remote access
Exploit availability:
Public exploit is available
Vendor: Artifex Software, Inc.
Affected software:
MuPDF
MuPDF
Detailed vulnerability description
Stack-based buffer overflow in jstest_main.c in mujstest in Artifex
Software, Inc. MuPDF 1.10a allows remote attackers to have unspecified
impact via a crafted image.
How to mitigate CVE-2017-6060
Update to version 1.11-r1.