CVE-2018-6191
MEDIUMArtifex MuJS < 1.0.2 - Integer Overflow in js_strtod
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-6191. PoCs published by Andrea Sindoni.
AI-analyzed exploit summary The exploit demonstrates an integer overflow in the js_strtod function in Artifex MuJS due to incorrect exponent validation, leading to an out-of-bounds read and crash. The PoC is a JavaScript file that triggers the vulnerability by using an excessively large exponent.
Description
The js_strtod function in jsdtoa.c in Artifex MuJS through 1.0.2 has an integer overflow because of incorrect exponent validation.
Exploits (1)
The exploit demonstrates an integer overflow in the js_strtod function in Artifex MuJS due to incorrect exponent validation, leading to an out-of-bounds read and crash. The PoC is a JavaScript file that triggers the vulnerability by using an excessively large exponent.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H