Security Advisory

CVE-2018-19881

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-12-06 00:00:00
Last updated 2024-09-16 15:58:50
Assigner mitre
State PUBLISHED

Description

In Artifex MuPDF 1.14.0, svg/svg-run.c allows remote attackers to cause a denial of service (recursive calls followed by a fitz/xml.c fz_xml_att crash from excessive stack consumption) via a crafted svg file, as demonstrated by mupdf-gl.