PT-2019-12949 · Artifex · Artifex Mujs

Published

2019-06-13

·

Updated

2019-06-17

·

CVE-2019-12798

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Artifex MuJS version 1.0.5
Description An issue was discovered in Artifex MuJS where the regcompx function in regexp.c does not restrict regular expression program size, leading to an overflow of the parsed syntax list size.
Recommendations For Artifex MuJS version 1.0.5, consider restricting the size of regular expressions to prevent overflows until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-12798

Affected Products

Artifex Mujs