CVE-2016-9017: Infoleak
Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain sensitive information by using the "opname in crafted JavaScript file" approach, related to an "Out-of-Bounds read" issue affecting the jsCdumpfunction function in the jsdump.c component.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9017?
CVE-2016-9017 is considered to have moderate severity due to its potential for sensitive information disclosure.
How do I fix CVE-2016-9017?
To fix CVE-2016-9017, update to the latest version of Artifex MuJS that includes the security patch.
What type of vulnerability is CVE-2016-9017?
CVE-2016-9017 is an Out-of-Bounds read vulnerability affecting the jsC_dumpfunction in MuJS.
Who is affected by CVE-2016-9017?
CVE-2016-9017 affects users of Artifex MuJS versions prior to 5c337af4b3df80cf967e4f9f6a21522de84b392a.
Can CVE-2016-9017 lead to data exposure?
Yes, CVE-2016-9017 can lead to data exposure through crafted JavaScript files.