CVE-2019-7321: Critical severity artifex software mupdf vulnerability
Usage of an uninitialized variable in the function fzloadjpeg in Artifex MuPDF 1.14 can result in a heap overflow vulnerability that allows an attacker to execute arbitrary code.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-7321?
CVE-2019-7321 is a vulnerability in Artifex MuPDF 1.14 that allows an attacker to execute arbitrary code through a heap overflow.
What is the severity of CVE-2019-7321?
CVE-2019-7321 has a severity rating of 9.8, which is classified as critical.
How does CVE-2019-7321 affect Artifex MuPDF?
CVE-2019-7321 affects Artifex MuPDF 1.14, specifically in the function fz_load_jpeg, where the usage of an uninitialized variable can result in a heap overflow vulnerability.
How can an attacker exploit CVE-2019-7321?
An attacker can exploit CVE-2019-7321 by executing arbitrary code through the heap overflow vulnerability in Artifex MuPDF 1.14.
Is there a fix for CVE-2019-7321?
Yes, a fix for CVE-2019-7321 is available and users should update to the patched version of Artifex MuPDF 1.14.