CVE-2017-7885

Artifex jbig2dec 0.13 has a heap-based buffer over-read leading to denial of service (application crash) or disclosure of sensitive information from process memory, because of an integer overflow in the jbig2_decode_symbol_dict function in jbig2_symbol_dict.c in libjbig2dec.a during operation on a crafted .jb2 file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:artifex:jbig2dec:0.13:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-04-17 00:59

Updated : 2023-12-10 12:01


NVD link : CVE-2017-7885

Mitre link : CVE-2017-7885

CVE.ORG link : CVE-2017-7885


JSON object : View

Products Affected

artifex

  • jbig2dec
CWE
CWE-190

Integer Overflow or Wraparound