← Back

CVE-2020-16600

nvd nist
Published: Dec 9, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A Use After Free vulnerability exists in Artifex Software, Inc. MuPDF library 1.17.0-rc1 and earlier when a valid page was followed by a page with invalid pixmap dimensions, causing bander - a static - to point to previously freed memory instead of a newband_writer.

Affected (2)

Products: Artifex: Mupdf
1 product
Mupdf
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Artifex
Up to 1.16.1
Version 1.17.0 rc1

References (4)

Timeline

No history available yet.