Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and previous versions allows remote malicious users to execute arbitrary code via a large number of entries in the ContextColor value of the Fill attribute in a Path element.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
artifex mupdf 1.0 |
||
artifex mupdf 1.2 |
||
artifex mupdf 1.1 |
||
artifex mupdf |