OSV-2018-252

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/mupdf/OSV-2018-252.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2018-252
Published
2021-01-15T00:00:07.554706Z
Modified
2022-04-13T03:04:31.359299Z
Summary
Heap-use-after-free in fz_fin_cached_color_converter
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5604

Crash type: Heap-use-after-free READ 8
Crash state:
fz_fin_cached_color_converter
fz_paint_shade
fz_draw_fill_shade
References

Affected packages

OSS-Fuzz / mupdf

Package

Name
mupdf
Purl
pkg:generic/mupdf

Affected ranges

Type
GIT
Repo
git://git.ghostscript.com/mupdf.git
Events
Introduced
11ee2bcf4d23bcb443d6b39caa2ac62fdd9920b2
Fixed
71ceebcf56e682504da22c4035b39a2d451e8ffd
Fixed
4889fe51af274e0c158a0a8a2e6132c700937427

Ecosystem specific

{
    "introduced_range": "9086386263154498dcb18c96f1e1630903b21a3c:d9bc8c6f7fb2e3ec7035bebaaee0edcf59287705"
}

Database specific

{
    "fixed_range": "3e86abff1a7ff9b1819b37dbde769e20e34042e7:4889fe51af274e0c158a0a8a2e6132c700937427"
}