VYPR
High severity7.8NVD Advisory· Published Apr 24, 2018· Updated Jun 17, 2026

CVE-2016-8728

CVE-2016-8728

Description

An exploitable heap out of bounds write vulnerability exists in the Fitz graphical library part of the MuPDF renderer. A specially crafted PDF file can cause a out of bounds write resulting in heap metadata and sensitive process memory corruption leading to potential code execution. Victim needs to open the specially crafted file in a vulnerable reader in order to trigger this vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Artifex/Mupdf2 versions
    cpe:2.3:a:artifex:mupdf:1.10:rc1:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:artifex:mupdf:1.10:rc1:*:*:*:*:*:*
    • (no CPE)range: 1.10-rc1
  • MuPDF/MuPDFllm-fuzzy

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.