Vulnerabilities > Artifex

DATE CVE VULNERABILITY TITLE RISK
2021-07-21 CVE-2021-37220 Out-Of-Bounds Write vulnerability in Artifex Mupdf
MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table.
network
artifex CWE-787
4.3
2021-07-21 CVE-2020-19609 Out-Of-Bounds Write vulnerability in Artifex Mupdf
Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service.
network
artifex CWE-787
4.3
2021-07-13 CVE-2020-22885 Classic Buffer Overflow vulnerability in Artifex Mujs
Buffer overflow vulnerability in mujs before 1.0.8 due to recursion in the GC scanning phase, allows remote attackers to cause a denial of service.
network
low complexity
artifex CWE-120
5.0
2021-07-13 CVE-2020-22886 Classic Buffer Overflow vulnerability in Artifex Mujs
Buffer overflow vulnerability in function jsG_markobject in jsgc.c in mujs before 1.0.8, allows remote attackers to cause a denial of service.
network
low complexity
artifex CWE-120
5.0
2021-02-23 CVE-2021-3407 Double Free vulnerability in multiple products
A flaw was found in mupdf 1.18.0.
4.3
2020-12-09 CVE-2020-16600 USE After Free vulnerability in Artifex Mupdf
A Use After Free vulnerability exists in Artifex Software, Inc.
network
artifex CWE-416
6.8
2020-10-02 CVE-2020-26519 Out-Of-Bounds Write vulnerability in multiple products
Artifex MuPDF before 1.18.0 has a heap based buffer over-write when parsing JBIG2 files allowing attackers to cause a denial of service.
4.3
2020-09-03 CVE-2020-14373 USE After Free vulnerability in multiple products
A use after free was found in igc_reloc_struct_ptr() of psi/igc.c of ghostscript-9.25.
local
low complexity
artifex redhat CWE-416
2.1
2020-08-13 CVE-2020-24343 USE After Free vulnerability in Artifex Mujs
Artifex MuJS through 1.0.7 has a use-after-free in jsrun.c because of unconditional marking in jsgc.c.
network
artifex CWE-416
6.8
2020-08-13 CVE-2020-17538 Out-Of-Bounds Write vulnerability in Artifex Ghostscript 9.50
A buffer overflow vulnerability in GetNumSameData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file.
network
artifex CWE-787
4.3