Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28215
HistoryDec 06, 2020 - 3:28 a.m.

Denial Of Service (DoS)

2020-12-0603:28:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
mupdf
vulnerability
denial of service
segmentation fault
pdf file

EPSS

0.003

Percentile

69.9%

mupdf is vulnerable to denial of service. The fz_append_byte function in fitz/buffer.c due to an array-index underflow allows remote attackers to cause a denial of service through a segmentation fault via a malicious pdf file.