~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
Candidate: CVE-2016-10247
PublicDate: 2017-03-16
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10247
 http://www.openwall.com/lists/oss-security/2016/10/16/19
Description:
 Buffer overflow in the my_getline function in jstest_main.c in Mujstest in
 Artifex Software, Inc. MuPDF before 1.10 allows remote attackers to cause a
 denial of service (out-of-bounds write) via a crafted file.
Ubuntu-Description:
Notes:
 ratliff> test program not included in binary packages
Bugs:
Priority: medium
Discovered-by: Agostino Sarubbo
Assigned-to:

Patches_mupdf:
upstream_mupdf: needs-triage
precise_mupdf: not-affected (code not present)
trusty_mupdf: not-affected (code not shipped)
vivid/stable-phone-overlay_mupdf: DNE
vivid/ubuntu-core_mupdf: DNE
xenial_mupdf: not-affected (code not shipped)
yakkety_mupdf: not-affected (code not shipped)
devel_mupdf: not-affected (code not shipped)