Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
artifex vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2020-22886
Buffer overflow vulnerability in function jsG_markobject in jsgc.c in mujs prior to 1.0.8, allows remote malicious users to cause a denial of service.
Artifex Mujs
6.8
CVSSv2
CVE-2017-5627
An issue exists in Artifex Software, Inc. MuJS prior to 4006739a28367c708dea19aeb19b8a1a9326ce08. The jsR_setproperty function in jsrun.c lacks a check for a negative array length. This leads to an integer overflow in the js_pushstring function in jsrun.c when parsing a specially...
Artifex Mujs
6.8
CVSSv2
CVE-2017-5628
An issue exists in Artifex Software, Inc. MuJS prior to 8f62ea10a0af68e56d5c00720523ebcba13c2e6a. The MakeDay function in jsdate.c does not validate the month, leading to an integer overflow when parsing a specially crafted JS file.
Artifex Mujs
7.5
CVSSv2
CVE-2016-10133
Heap-based buffer overflow in the js_stackoverflow function in jsrun.c in Artifex Software, Inc. MuJS allows malicious users to have unspecified impact by leveraging an error when dropping extra arguments to lightweight functions.
Artifex Mujs
7.5
CVSSv2
CVE-2016-10141
An integer overflow vulnerability was observed in the regemit function in regexp.c in Artifex Software, Inc. MuJS before fa3d30fd18c348bb4b1f3858fb860f4fcd4b2045. The attack requires a regular expression with nested repetition. A successful exploitation of this issue can lead to ...
Artifex Mujs
4.3
CVSSv2
CVE-2018-5759
jsparse.c in Artifex MuJS up to and including 1.0.2 does not properly maintain the AST depth for binary expressions, which allows remote malicious users to cause a denial of service (excessive recursion) via a crafted file.
Artifex Mujs
1 EDB exploit
1 Github repository
5.8
CVSSv2
CVE-2019-14975
Artifex MuPDF prior to 1.16.0 has a heap-based buffer over-read in fz_chartorune in fitz/string.c because pdf/pdf-op-filter.c does not check for a missing string.
Artifex Mupdf
6.8
CVSSv2
CVE-2018-1000039
In MuPDF 1.12.0 and previous versions, multiple heap use after free bugs in the PDF parser could allow an malicious user to execute arbitrary code, read memory, or cause a denial of service via a crafted file.
Artifex Mupdf
4.3
CVSSv2
CVE-2018-6191
The js_strtod function in jsdtoa.c in Artifex MuJS up to and including 1.0.2 has an integer overflow because of incorrect exponent validation.
Artifex Mujs
1 EDB exploit
1 Github repository
5
CVSSv2
CVE-2018-11645
psi/zfile.c in Artifex Ghostscript prior to 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote malicious users to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.
Artifex Ghostscript
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27977
IMAP
local users
CVE-2024-32038
CVE-2023-49963
CVE-2023-22869
CVE-2024-31497
local
CVE-2024-2961
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »