CVE-2016-7504

CRITICAL

Artifex MuJS < 5000749f5afe3b956fc916e407309de840997f4a - Use-After-Free in Rp_toString

Title source: llm
STIX 2.1

Description

A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80cf967e4f9f6a21522de84b392a. A successful exploitation of this issue can lead to code execution or denial of service condition.

References (2)

Core 2
Core References
Exploit, Vendor Advisory x_refsource_confirm
http://bugs.ghostscript.com/show_bug.cgi?id=697142
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94241

Scores

CVSS v3 9.8
EPSS 0.0107
EPSS Percentile 78.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-416
Status published
Products (1)
artifex/mujs < 5000749f5afe3b956fc916e407309de840997f4a
Published Oct 29, 2016
Tracked Since Feb 18, 2026