An integer overflow vulnerability was observed in the regemit function in regexp.c in Artifex Software, Inc. MuJS before fa3d30fd18c348bb4b1f3858fb860f4fcd4b2045. The attack requires a regular expression with nested repetition. A successful exploitation of this issue can lead to code execution or a denial of service (buffer overflow) condition.
References
Link | Resource |
---|---|
https://bugs.ghostscript.com/show_bug.cgi?id=697448 | Issue Tracking |
http://git.ghostscript.com/?p=mujs.git;h=fa3d30fd18c348bb4b1f3858fb860f4fcd4b2045 | Issue Tracking Patch Third Party Advisory |
http://www.securityfocus.com/bid/95876 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2017-01-13 01:59
Updated : 2020-04-22 05:53
NVD link : CVE-2016-10141
Mitre link : CVE-2016-10141
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
artifex
- mujs