EPSS
Percentile
79.6%
MuPDF is vulnerable to denial of service (DoS) attacks. The attack can be launched if a malicious file is passed to the fz_subsample_pixmap() function in fitz/pixmap.c, causing an out-of-bound read and application crash.
fz_subsample_pixmap()
fitz/pixmap.c
git.ghostscript.com/?p=mupdf.git;h=2c4e5867ee699b1081527bc6c6ea0e99a35a5c27
bugs.ghostscript.com/show_bug.cgi?id=697515