Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mupdf vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2023-51104
A floating point exception (divide-by-zero) vulnerability exists in mupdf 1.23.4 in function pnm_binary_read_image() of load-pnm.c when span equals zero.
Artifex Mupdf 1.23.4
7.5
CVSSv3
CVE-2023-51105
A floating point exception (divide-by-zero) vulnerability exists in mupdf 1.23.4 in function bmp_decompress_rle4() of load-bmp.c.
Artifex Mupdf 1.23.4
7.5
CVSSv3
CVE-2023-51106
A floating point exception (divide-by-zero) vulnerability exists in mupdf 1.23.4 in function pnm_binary_read_image() of load-pnm.c when fz_colorspace_n returns zero.
Artifex Mupdf 1.23.4
7.5
CVSSv3
CVE-2023-51107
A floating point exception (divide-by-zero) vulnerability exists in mupdf 1.23.4 in functon compute_color() of jquant2.c.
Artifex Mupdf 1.23.4
7.5
CVSSv3
CVE-2024-24258
freeglut 3.4.0 exists to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.
Artifex Mupdf 1.23.9
7.5
CVSSv3
CVE-2024-24259
freeglut up to and including 3.4.0 exists to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function.
Artifex Mupdf 1.23.9
5.5
CVSSv3
CVE-2018-16648
In Artifex MuPDF 1.13.0, the fz_append_byte function in fitz/buffer.c allows remote malicious users to cause a denial of service (segmentation fault) via a crafted pdf file. This is caused by a pdf/pdf-device.c pdf_dev_alpha array-index underflow.
Artifex Mupdf 1.13.0
7.8
CVSSv3
CVE-2017-7264
Use-after-free vulnerability in the fz_subsample_pixmap function in fitz/pixmap.c in Artifex Software, Inc. MuPDF 1.10a allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted document.
Artifex Mupdf 1.10a
9.8
CVSSv3
CVE-2019-7321
Usage of an uninitialized variable in the function fz_load_jpeg in Artifex MuPDF 1.14 can result in a heap overflow vulnerability that allows an malicious user to execute arbitrary code.
Artifex Mupdf 1.14.0
5.5
CVSSv3
CVE-2021-37220
MuPDF up to and including 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input.
Artifex Mupdf
Fedoraproject Fedora 34
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-40673
CVE-2024-36674
CVE-2024-27348
unspecified
CVE-2024-24919
CVE-2024-4870
malicious code
CVE-2024-2019
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »