MGASA-2017-0479
Dashboard / Vulnerabilities / MGASA-2017-0479
MGASA-2017-0479
Summary: Updated mupdf packages fix security vulnerability
Details: Multiple vulnerabilities have been found in the PDF viewer MuPDF, which may result in denial of service or the execution of arbitrary code if a malformed PDF file is opened (CVE-2016-8674, CVE-2017-5896, CVE-2017-5991) Terry Chia and Jeremy Heng discovered an integer overflow that can cause arbitrary code execution via a crafted .pdf file (CVE-2017-15587).
References: https://advisories.mageia.org/MGASA-2017-0479.html, https://bugs.mageia.org/show_bug.cgi?id=20310, https://www.debian.org/security/2017/dsa-3797, https://www.debian.org/security/2017/dsa-4006
Affected packages
Package
Name: mupdf
Purl: pkg:rpm/mageia/mupdf?arch=source&distro=mageia-5
Affected ranges
Type: ECOSYSTEM
Events:
