HIGH
An issue was discovered in Artifex MuJS 1.0.5
Published Apr 21, 2019
7.5
HIGHCVSS 3.0
EPSS 2.32%
Description
An issue was discovered in Artifex MuJS 1.0.5. It has unlimited recursion because the match function in regexp.c lacks a depth check.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://www.ghostscript.com/cgi-bin/findgit.cgi?00d4606c3baf813b7b1c176823b2729bf51002a2 x_refsource_MISCPatchVendor Advisory
- http://www.securityfocus.com/bid/108093 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://bugs.ghostscript.com/show_bug.cgi?id=700937 x_refsource_MISCIssue TrackingPermissions RequiredVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-3088 Advisory
- https://github.com/ccxvii/mujs/commit/00d4606c3baf813b7b1c176823b2729bf51002a2 x_refsource_MISCPatchThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3RQXMWEOWCGLOLFBQSXBM3MBN33T4I5H/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/67PMOZV4DLVL2KGU2SV724QL7Y4PKWKU/ vendor-advisoryx_refsource_FEDORA
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MFCRO74ORRIVWNVAX2MAMRY3THCTWLQI/ vendor-advisoryx_refsource_FEDORA
- https://security.gentoo.org/glsa/202007-52 vendor-advisoryx_refsource_GENTOO
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 21, 2019
Updated Aug 4, 2024
Reserved Apr 21, 2019
Link CVE-2019-11413
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2019-3088 Assigner mitre
Published Apr 21, 2019
Updated Aug 4, 2024
Exploited since n/a
Link EUVD-2019-3088