CVE-2016-6265
published 2016-09-22CVE-2016-6265: Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a…
PriorityP419medium5.5CVSS 3.0
AVLACLPRNUIRSUCNINAH
EPSS
1.63%
73.7th percentile
Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | mupdf | <= 1.9 | — |
| artifex | mupdf | >= 0 < 1.9a+ds1-1.1 | 1.9a+ds1-1.1 |
| artifex | mupdf | >= 0 < 1.9a+ds1-1.1 | 1.9a+ds1-1.1 |
| artifex | mupdf | >= 0 < 1.9a+ds1-1.1 | 1.9a+ds1-1.1 |
| artifex | mupdf | >= 0 < 1.9a+ds1-1.1 | 1.9a+ds1-1.1 |
| debian | mupdf | < mupdf 1.9a+ds1-1.1 (bookworm) | mupdf 1.9a+ds1-1.1 (bookworm) |
| opensuse | leap | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_redhat7.5HIGH
vendor_debian5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
python-django: CSRF protection bypass on a site with Google Analytics
vendor_redhat·2016-09-26·CVSS 7.5
CVE-2016-7401 [HIGH] CWE-352 python-django: CSRF protection bypass on a site with Google Analytics
python-django: CSRF protection bypass on a site with Google Analytics
The cookie parsing code in Django before 1.8.15 and 1.9.x before 1.9.10, when used on a site with Google Analytics, allows remote attackers to bypass an intended CSRF protection mechanism by setting arbitrary cookies.
A CSRF flaw was found in Django, where an interaction between Google Analytics and Django's cookie parsing could allow an attacker to set arbitrary cookies leading to a bypass of CSRF protection. In this update, the parser for ''request.COOKIES'' has been simplified to better match browser behavior and to mitigate this attack. ''request.COOKIES'' may now contain cookies that are invalid according to RFC 6265 but are possible to set using ''document.cookie''.
Statement: This issue did not affect the versi
Debian
CVE-2016-6265: mupdf - Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in ...
vendor_debian·2016·CVSS 5.5
CVE-2016-6265 [MEDIUM] CVE-2016-6265: mupdf - Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in ...
Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
Scope: local
bookworm: resolved (fixed in 1.9a+ds1-1.1)
bullseye: resolved (fixed in 1.9a+ds1-1.1)
forky: resolved (fixed in 1.9a+ds1-1.1)
sid: resolved (fixed in 1.9a+ds1-1.1)
trixie: resolved (fixed in 1.9a+ds1-1.1)
GHSA
GHSA-mqfm-r5w2-p74j: Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref
ghsa_unreviewed·2022-05-14
CVE-2016-6265 [MEDIUM] CWE-416 GHSA-mqfm-r5w2-p74j: Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref
Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
OSV
CVE-2016-6265: Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref
osv·2016-09-22·CVSS 5.5
CVE-2016-6265 [MEDIUM] CVE-2016-6265: Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref
Use-after-free vulnerability in the pdf_load_xref function in pdf/pdf-xref.c in MuPDF allows remote attackers to cause a denial of service (crash) via a crafted PDF file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-7401 python-django: CSRF protection bypass on a site with Google Analytics
bugzilla·2016-09-19·CVSS 7.5
CVE-2016-7401 [HIGH] CVE-2016-7401 python-django: CSRF protection bypass on a site with Google Analytics
CVE-2016-7401 python-django: CSRF protection bypass on a site with Google Analytics
An interaction between Google Analytics and Django's cookie parsing
could allow an attacker to set arbitrary cookies leading to a bypass of
CSRF protection.
The parser for ``request.COOKIES`` is simplified to better match the
behavior of browsers and to mitigate this attack. ``request.COOKIES``
may now contain cookies that are invalid according to RFC 6265 but are
possible to set via ``document.cookie``.
Discussion:
Acknowledgments:
Name: the upstream Django project
---
Created Django14 tracking bugs for this issue:
Affects: epel-6 [bug 1379487]
---
Created python-django15 tracking bugs for this issue:
Affects: epel-6 [bug 1379488]
---
Created python-django tracking bugs for this issue:
Affect
Bugzilla
CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c [fedora-all]
bugzilla·2016-07-22·CVSS 5.5
CVE-2016-6265 [MEDIUM] CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c [fedora-all]
CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of F
Bugzilla
CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c
bugzilla·2016-07-22·CVSS 5.5
CVE-2016-6265 [MEDIUM] CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c
CVE-2016-6265 mupdf: Use after free vulnerability in pdf_xref.c
A use after free vulnerability was found in MuPDF triggered by crafted PDF file.
Upstream bug:
http://bugs.ghostscript.com/show_bug.cgi?id=696941
CVE assignment:
http://seclists.org/oss-sec/2016/q3/127
Discussion:
Created mupdf tracking bugs for this issue:
Affects: fedora-all [bug 1359109]
http://bugs.ghostscript.com/show_bug.cgi?id=696941http://git.ghostscript.com/?p=mupdf.git%3Bh=fa1936405b6a84e5c9bb440912c23d532772f958http://lists.opensuse.org/opensuse-updates/2016-08/msg00007.htmlhttp://www.debian.org/security/2016/dsa-3655http://www.openwall.com/lists/oss-security/2016/07/21/7http://www.securityfocus.com/bid/92071https://security.gentoo.org/glsa/201702-12http://bugs.ghostscript.com/show_bug.cgi?id=696941http://git.ghostscript.com/?p=mupdf.git%3Bh=fa1936405b6a84e5c9bb440912c23d532772f958http://lists.opensuse.org/opensuse-updates/2016-08/msg00007.htmlhttp://www.debian.org/security/2016/dsa-3655http://www.openwall.com/lists/oss-security/2016/07/21/7http://www.securityfocus.com/bid/92071https://security.gentoo.org/glsa/201702-12
2016-09-22
Published