CVE-2019-14975: High severity artifex software mupdf vulnerability
Published Aug 14, 2019
·Updated
Artifex MuPDF before 1.16.0 has a heap-based buffer over-read in fzchartorune in fitz/string.c because pdf/pdf-op-filter.c does not check for a missing string.
Affected Software
1 affected component
Artifex Mupdf<1.16.0
Event History
Aug 14, 2019
CVE Published
via MITRE·12:46 PM
Data Sourced
via MITRE·12:46 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-14975.
2
What is the severity of CVE-2019-14975?
The severity of CVE-2019-14975 is high with a score of 7.1.
3
What is the affected software in CVE-2019-14975?
The affected software in CVE-2019-14975 is Artifex MuPDF before version 1.16.0.
4
What is the description of CVE-2019-14975?
CVE-2019-14975 is a heap-based buffer over-read vulnerability in Artifex MuPDF before version 1.16.0.
5
How can I fix CVE-2019-14975?
To fix CVE-2019-14975, update Artifex MuPDF to version 1.16.0 or later.