Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Invictus1306

#21729of 53,622
11Total CVSS
Vulnerabilities · 2
Medium
2
PT-2018-17131
5.5
2018-01-24
Artifex · Artifex Mujs · CVE-2018-5759
Name of the Vulnerable Software and Affected Versions: Artifex MuJS versions 1.0.2 and earlier Description: The issue is related to the improper maintenance of the AST depth for binary expressions in jsparse.c, which can be exploited by remote attackers to cause a denial of service through excessive recursion by using a crafted file. Recommendations: For Artifex MuJS versions 1.0.2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2018-17396
5.5
2018-01-24
Artifex · Mujs · CVE-2018-6191
**Name of the Vulnerable Software and Affected Versions** Artifex MuJS versions prior to 1.0.3 **Description** The issue is related to an integer overflow in the js strtod function due to incorrect exponent validation. **Recommendations** For versions prior to 1.0.3, update to version 1.0.3 or later to resolve the issue.