PT-2019-12949 · Artifex · Artifex Mujs
Publicado
2019-06-13
·
Atualizado
2019-06-17
·
CVE-2019-12798
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Artifex MuJS version 1.0.5
Description
An issue was discovered in Artifex MuJS where the
regcompx function in regexp.c does not restrict regular expression program size, leading to an overflow of the parsed syntax list size.Recommendations
For Artifex MuJS version 1.0.5, consider restricting the size of regular expressions to prevent overflows until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Artifex Mujs