Vulnerability CVE-2021-37220


Published: 2021-07-21   Modified: 2021-07-22

Description:
MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input.

 References:
https://bugs.ghostscript.com/show_bug.cgi?id=703791
http://git.ghostscript.com/?p=mupdf.git;h=f5712c9949d026e4b891b25837edd2edc166151f

Copyright 2021, cxsecurity.com

 

Back to Top