CVE-2017-7264: Use After Free
Use-after-free vulnerability in the fzsubsamplepixmap function in fitz/pixmap.c in Artifex MuPDF 1.10a allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted document.
Other sources
Use-after-free vulnerability in the fzsubsamplepixmap function in fitz/pixmap.c in Artifex Software, Inc. MuPDF 1.10a allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted document.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7264?
CVE-2017-7264 has a severity rating that indicates a potential denial of service due to application crashes.
How do I fix CVE-2017-7264?
To fix CVE-2017-7264, update to a version of MuPDF later than 1.10a that addresses this vulnerability.
What are the potential impacts of CVE-2017-7264?
The potential impacts of CVE-2017-7264 include application crashes and possible exploitation leading to more severe consequences.
Which versions of MuPDF are affected by CVE-2017-7264?
CVE-2017-7264 affects MuPDF version 1.10a specifically.
Is CVE-2017-7264 a remote vulnerability?
Yes, CVE-2017-7264 can be exploited by remote attackers through crafted documents.