High severity7.8NVD Advisory· Published Dec 27, 2017· Updated May 13, 2026
CVE-2017-17866
CVE-2017-17866
Description
pdf/pdf-write.c in Artifex MuPDF before 1.12.0 mishandles certain length changes when a repair operation occurs during a clean operation, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted PDF document.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.ghostscript.com/cgi-bin/findgit.cginvdPatchThird Party Advisory
- bugs.ghostscript.com/show_bug.cginvdPermissions RequiredThird Party Advisory
- www.debian.org/security/2018/dsa-4334nvdThird Party Advisory
News mentions
0No linked articles in our index yet.