In Artifex MuPDF 1.14.0, the svg_run_image function in svg/svg-run.c allows remote attackers to cause a denial of service (href_att NULL pointer dereference and application crash) via a crafted svg file, as demonstrated by mupdf-gl.
References
Configurations
Information
Published : 2018-12-05 16:29
Updated : 2019-05-24 23:29
NVD link : CVE-2018-19882
Mitre link : CVE-2018-19882
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
artifex
- mupdf