Advisories ยป MGASA-2014-0041

Updated mupdf packages fix a buffer overflow

Publication date: 08 Feb 2014
Modification date: 08 Feb 2014
Type: security
Affected Mageia releases : 3 , 4

Description

Updated mupdf packages fix security vulnerability:

A stack-based buffer overflow was found in mupdf's xps_parse_color() function.
An attacker could create a specially crafted XPS file that, when opened, could
cause mupdf or an application using mupdf to crash.
                

References

SRPMS

4/core

3/core