CWE
125 119
Advisory Published
Updated

CVE-2017-5896: Buffer Overflow

First published: Wed Feb 15 2017(Updated: )

Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Artifex Software MuPDF<=1.10

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2017-5896?

    CVE-2017-5896 is classified as a moderate severity vulnerability due to its potential to cause denial of service.

  • How do I fix CVE-2017-5896?

    To fix CVE-2017-5896, update MuPDF to version 1.10b or later, which addresses the heap-based buffer overflow.

  • What types of systems are affected by CVE-2017-5896?

    CVE-2017-5896 affects all versions of MuPDF up to 1.10, specifically targeting the handling of crafted images.

  • What impact does CVE-2017-5896 have on my applications using MuPDF?

    Exploiting CVE-2017-5896 can lead to an out-of-bounds read, causing crashes and a denial of service in applications utilizing MuPDF.

  • Are there any known exploits for CVE-2017-5896?

    Yes, CVE-2017-5896 can be exploited by attackers using crafted images to trigger the buffer overflow.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203