Skip to main content

Vendor/product archive

artifex / mupdf CVEs

Beta · best-effort

67 CVEs tagged to artifex / mupdf3 Critical, 27 High, 36 Medium, 1 Low, 0 Unrated.

CVE-2025-71382

Published Jun 23, 2026

MuPDF before 1.27.0-rc1 contains an uncontrolled recursion vulnerability in the EPUB CSS rendering engine that allows remote attackers to cause a denial of service by supplying a…

CVSS 7.1 · High
evidence mentions
4
Buzz score
24.1
Vendor/product tagsBeta · best-effort

CVE-2026-7233

Published Apr 28, 2026

A vulnerability was determined in Artifex MuPDF up to 1.28.0. The impacted element is the function fz_subset_cff_for_gids of the file subset-cff.c of the component CFF Index Handl…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
37.0
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-40505

Published Apr 16, 2026

MuPDF before 1.27 contains an ANSI injection vulnerability in mutool that allows attackers to inject arbitrary ANSI escape sequences through crafted PDF metadata fields. Attackers…

CVSS 4.8 · Medium
evidence mentions
4
Buzz score
27.6
Vendor/product tagsBeta · best-effort

CVE-2026-25556

Published Feb 6, 2026

MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during display list rendering. The function…

CVSS 5.9 · Medium
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2025-55780

Published Sep 23, 2025

A null pointer dereference occurs in the function break_word_for_overflow_wrap() in MuPDF 1.26.4 when rendering a malformed EPUB document. Specifically, the function calls fz_html…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-46206

Published Aug 4, 2025

An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted P…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-46657

Published Dec 10, 2024

Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. This vulnerability allows attackers to cause a Denial of Servi…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24259

Published Feb 5, 2024

freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-24258

Published Feb 5, 2024

freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51107

Published Dec 26, 2023

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in functon compute_color() of jquant2.c. NOTE: this is disputed by the supplier be…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51106

Published Dec 26, 2023

A floating point exception (divide-by-zero) vulnerability was discovered in mupdf 1.23.4 in function pnm_binary_read_image() of load-pnm.c when fz_colorspace_n returns zero.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51105

Published Dec 26, 2023

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function bmp_decompress_rle4() of load-bmp.c.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51104

Published Dec 26, 2023

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in function pnm_binary_read_image() of load-pnm.c when span equals zero.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-51103

Published Dec 26, 2023

A floating point exception (divide-by-zero) vulnerability was discovered in Artifex MuPDF 1.23.4 in the function fz_new_pixmap_from_float_data() of pixmap.c.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-31794

Published Oct 31, 2023

MuPDF v1.21.1 was discovered to contain an infinite recursion in the component pdf_mark_list_push. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cra…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26683

Published Aug 22, 2023

A memory leak issue discovered in /pdf/pdf-font-add.c in Artifex Software MuPDF 1.17.0 allows attackers to obtain sensitive information.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-21896

Published Aug 22, 2023

A Use After Free vulnerability in svg_dev_text_span_as_paths_defs function in source/fitz/svg-device.c in Artifex Software MuPDF 1.16.0 allows remote attackers to cause a denial o…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-4216

Published Aug 26, 2022

A Floating point exception (division-by-zero) flaw was found in Mupdf for zero width pages in muraster.c. It is fixed in Mupdf-1.20.0-rc1 upstream.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-37220

Published Jul 21, 2021

MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-19609

Published Jul 21, 2021

Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-16600

Published Dec 9, 2020

A Use After Free vulnerability exists in Artifex Software, Inc. MuPDF library 1.17.0-rc1 and earlier when a valid page was followed by a page with invalid pixmap dimensions, causi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-14975

Published Aug 14, 2019

Artifex MuPDF before 1.16.0 has a heap-based buffer over-read in fz_chartorune in fitz/string.c because pdf/pdf-op-filter.c does not check for a missing string.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 67 CVEsPage 1 of 3