Artifex Mujs vulnerabilities

25 known vulnerabilities affecting artifex/mujs.

Total CVEs
25
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH14MEDIUM4

Vulnerabilities

Page 2 of 2
CVE-2016-9136HIGHCVSS 7.5≤ 2016-10-312016-11-03
CVE-2016-9136 [HIGH] CWE-119 CVE-2016-9136: Artifex Software, Inc. MuJS before a0ceaf5050faf419401fe1b83acfa950ec8a8a89 allows context-dependent Artifex Software, Inc. MuJS before a0ceaf5050faf419401fe1b83acfa950ec8a8a89 allows context-dependent attackers to obtain sensitive information by using the "crafted JavaScript" approach, related to a "Buffer Over-read" issue.
nvd
CVE-2016-7504CRITICALCVSS 9.8≤ 5000749f5afe3b956fc916e407309de840997f4a2016-10-29
CVE-2016-7504 [CRITICAL] CWE-416 CVE-2016-7504: A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS b A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80cf967e4f9f6a21522de84b392a. A successful exploitation of this issue can lead to code execution or denial of service condition.
nvd
CVE-2016-7505CRITICALCVSS 9.8≤ a3a4fe840b80706c706e86160352af5936f292d82016-10-29
CVE-2016-7505 [CRITICAL] CWE-119 CVE-2016-7505: A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689c860b77e6111d2ee439d5. A successful exploitation of this issue can lead to code execution or denial of service condition.
nvd
CVE-2016-7506HIGHCVSS 7.5≤ 8c805b4eb19cf2af689c860b77e6111d2ee439d52016-10-29
CVE-2016-7506 [HIGH] CWE-125 CVE-2016-7506: An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 5000749f5afe3b956fc916e407309de840997f4a. A successful exploitation of this issue can lead to code execution or denial of service condition.
nvd
CVE-2016-9017HIGHCVSS 7.5≤ 5c337af4b3df80cf967e4f9f6a21522de84b392a2016-10-28
CVE-2016-9017 [HIGH] CWE-125 CVE-2016-9017: Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain sensitive information by using the "opname in crafted JavaScript file" approach, related to an "Out-of-Bounds read" issue affecting the jsC_dumpfunction function in the jsdump.c component.
nvd