Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-2013

Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary code via a large number of entries in the ContextColor value of the Fill attribute in a Path element.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.283
EPSS Ranking 96.2%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2014-2013
  • Artifex » Mupdf » Version: 0.6
    cpe:2.3:a:artifex:mupdf:0.6
  • Artifex » Mupdf » Version: 0.7
    cpe:2.3:a:artifex:mupdf:0.7
  • Artifex » Mupdf » Version: 0.8
    cpe:2.3:a:artifex:mupdf:0.8
  • Artifex » Mupdf » Version: 0.8.15
    cpe:2.3:a:artifex:mupdf:0.8.15
  • Artifex » Mupdf » Version: 0.8.165
    cpe:2.3:a:artifex:mupdf:0.8.165
  • Artifex » Mupdf » Version: 0.9
    cpe:2.3:a:artifex:mupdf:0.9
  • Artifex » Mupdf » Version: 0.9.1
    cpe:2.3:a:artifex:mupdf:0.9.1
  • Artifex » Mupdf » Version: 1.0
    cpe:2.3:a:artifex:mupdf:1.0
  • Artifex » Mupdf » Version: 1.1
    cpe:2.3:a:artifex:mupdf:1.1
  • Artifex » Mupdf » Version: 1.2
    cpe:2.3:a:artifex:mupdf:1.2
  • Artifex » Mupdf » Version: 1.3
    cpe:2.3:a:artifex:mupdf:1.3


Contact Us

Shodan ® - All rights reserved