[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4006-2 mupdf -- mupdf

ID: oval:org.secpod.oval:def:603169Date: (C)2017-12-04   (M)2023-12-20
Class: PATCHFamily: unix




It was discovered that the original patch applied for CVE-2017-15587 in DSA-4006-1 was incomplete. Updated packages are now available to address this problem. For reference, the relevant part of the original advisory text follows. CVE-2017-15587 Terry Chia and Jeremy Heng discovered an integer overflow that can cause arbitrary code execution via a crafted .pdf file.

Platform:
Debian 8.x
Debian 9.x
Product:
mupdf
libmupdf-dev
Reference:
DSA-4006-2
CVE-2017-15587
CVE    1
CVE-2017-15587
CPE    4
cpe:/a:artifex:mupdf
cpe:/a:artifex:mupdf:1.11
cpe:/o:debian:debian_linux:8.x
cpe:/o:debian:debian_linux:9.x
...

© SecPod Technologies