Skip to main content

Vendor/product archive

artifex / jbig2dec CVEs

Beta · best-effort

7 CVEs tagged to artifex / jbig2dec1 Critical, 3 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-46361

Published Oct 31, 2023

Artifex Software jbig2dec v0.20 was discovered to contain a SEGV vulnerability via jbig2_error at /jbig2dec/jbig2.c.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9216

Published May 24, 2017

libjbig2dec.a in Artifex jbig2dec 0.13, as used in MuPDF and Ghostscript, has a NULL pointer dereference in the jbig2_huffman_get function in jbig2_huffman.c. For example, the jbi…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7976

Published Apr 19, 2017

Artifex jbig2dec 0.13 allows out-of-bounds writes and reads because of an integer overflow in the jbig2_image_compose function in jbig2_image.c during operations on a crafted .jb2…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7975

Published Apr 19, 2017

Artifex jbig2dec 0.13, as used in Ghostscript, allows out-of-bounds writes because of an integer overflow in the jbig2_build_huffman_table function in jbig2_huffman.c during opera…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7885

Published Apr 17, 2017

Artifex jbig2dec 0.13 has a heap-based buffer over-read leading to denial of service (application crash) or disclosure of sensitive information from process memory, because of an…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1