Artifex MuPDF is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to crash the application, resulting in a denial-of-service condition.
Information
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Artifex Mupdf -
Exploit
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
References:
- Bug 697500 - Null pointer dereference in fz_paint_pixmap_with_mask() (GhostScript)
- Bug 697500: Fix NULL ptr access. (GhostScript)