Search CVE reports


Toggle filters

1 – 10 of 68 results


CVE-2025-55780

Medium priority
Needs evaluation

A null pointer dereference occurs in the function break_word_for_overflow_wrap() in MuPDF 1.26.4 when rendering a malformed EPUB document. Specifically, the function calls fz_html_split_flow() to split a FLOW_WORD node, but does...

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-46206

Medium priority
Vulnerable

An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the...

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-46657

Medium priority
Vulnerable

Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-24259

Medium priority

Some fixes available 8 of 17

freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function.

2 affected packages

mupdf, freeglut

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
freeglut Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-24258

Medium priority

Some fixes available 8 of 17

freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.

2 affected packages

mupdf, freeglut

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
freeglut Fixed Fixed Fixed Fixed
Show less packages

CVE-2023-51107

Medium priority
Needs evaluation

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in functon compute_color() of jquant2.c. NOTE: this is disputed by the supplier because there was not reasonable evidence...

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-51106

Medium priority
Needs evaluation

A floating point exception (divide-by-zero) vulnerability was discovered in mupdf 1.23.4 in function pnm_binary_read_image() of load-pnm.c when fz_colorspace_n returns zero.

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-51105

Medium priority
Needs evaluation

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function bmp_decompress_rle4() of load-bmp.c.

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-51104

Medium priority
Needs evaluation

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function pnm_binary_read_image() of load-pnm.c when span equals zero.

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-51103

Medium priority
Needs evaluation

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in the function fz_new_pixmap_from_float_data() of pixmap.c.

1 affected package

mupdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mupdf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages