Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiffexpandcolormap() function when parsing TIFF files allowing attackers to cause a denial of service.
{ "binaries": [ { "binary_name": "libmupdf-dev", "binary_version": "1.7a-1ubuntu0.1~esm1" }, { "binary_name": "mupdf", "binary_version": "1.7a-1ubuntu0.1~esm1" }, { "binary_name": "mupdf-tools", "binary_version": "1.7a-1ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "libmupdf-dev", "binary_version": "1.12.0+ds1-1ubuntu0.1~esm1" }, { "binary_name": "mupdf", "binary_version": "1.12.0+ds1-1ubuntu0.1~esm1" }, { "binary_name": "mupdf-tools", "binary_version": "1.12.0+ds1-1ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "libmupdf-dev", "binary_version": "1.16.1+ds1-1ubuntu1+esm1" }, { "binary_name": "mupdf", "binary_version": "1.16.1+ds1-1ubuntu1+esm1" }, { "binary_name": "mupdf-tools", "binary_version": "1.16.1+ds1-1ubuntu1+esm1" } ] }
{ "binaries": [ { "binary_name": "libmupdf-dev", "binary_version": "1.19.0+ds1-2" }, { "binary_name": "mupdf", "binary_version": "1.19.0+ds1-2" }, { "binary_name": "mupdf-tools", "binary_version": "1.19.0+ds1-2" } ] }