Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-6060. PoCs published by Agostino Sarubbo.
AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in mujstest (part of mupdf) via a crafted image file, leading to a crash. The PoC leverages AddressSanitizer output to confirm the vulnerability in version 1.10a.
Description
Stack-based buffer overflow in jstest_main.c in mujstest in Artifex Software, Inc. MuPDF 1.10a allows remote attackers to have unspecified impact via a crafted image.
Exploits (1)
This exploit demonstrates a stack-based buffer overflow in mujstest (part of mupdf) via a crafted image file, leading to a crash. The PoC leverages AddressSanitizer output to confirm the vulnerability in version 1.10a.
References (8)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H