V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2016-9108
DEB
High

Integer overflow in the js_regcomp function in regexp.c in Artifex Software, Inc. MuJS before commit b6de34ac6d8bb7dd5461c57940acfbd3ee7fd9…

CVSS
7.5
High
EPSS
0.03
p84
Published
2016-01-01
Updated
2016-01-01
Description

Integer overflow in the js_regcomp function in regexp.c in Artifex Software, Inc. MuJS before commit b6de34ac6d8bb7dd5461c57940acfbd3ee7fd93e allows attackers to cause a denial of service (application crash) via a crafted regular expression.

Tags · CWE
Pre-auth
CWE-190
CAPEC-92
Affected products
MujsMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdfMupdf
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
2016-01-01
Published
2016-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.028 · p84
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
mujsTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
mupdfTracked
Showing first 20 of 24
Source databases
DEB
CVE
UBU