Artifex MuPDF CVE-2017-5991 Null Pointer Dereference Denial of Service Vulnerability

Artifex MuPDF is prone to a denial-of-service vulnerability.

Attackers can exploit this issue to crash the application, resulting in a denial-of-service condition.


Bugtraq ID: 96213
Class: Failure to Handle Exceptional Conditions
CVE: CVE-2017-5991

Remote: Yes
Local: No
Published: Feb 15 2017 12:00AM
Updated: Jun 06 2017 07:02PM
Credit: Kamil Frankowicz.
Vulnerable: Gentoo Linux
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Artifex Mupdf -

Not Vulnerable:


The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.

Related Posts