{"dataType":"CVE_RECORD","cveMetadata":{"state":"PUBLISHED","cveId":"CVE-2018-1000039","assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","dateReserved":"2018-02-02T00:00:00.000Z","dateUpdated":"2024-08-05T12:33:48.769Z","datePublished":"2018-05-24T13:00:00.000Z"},"containers":{"cna":{"dateAssigned":"2018-05-18T00:00:00.000Z","providerMetadata":{"orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre","dateUpdated":"2024-07-15T20:16:08.711Z"},"descriptions":[{"lang":"en","value":"In Artifex MuPDF 1.12.0 and earlier, multiple heap use after free bugs in the PDF parser could allow an attacker to execute arbitrary code, read memory, or cause a denial of service via a crafted file."}],"affected":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}],"references":[{"name":"GLSA-201811-15","tags":["vendor-advisory"],"url":"https://security.gentoo.org/glsa/201811-15"},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=4dcc6affe04368461310a21238f7e1871a752a05%3Bhp=8ec561d1bccc46e9db40a9f61310cd8b3763914e"},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=71ceebcf56e682504da22c4035b39a2d451e8ffd%3Bhp=7f82c01523505052615492f8e220f4348ba46995"},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5492"},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5521"},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5604"},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=f597300439e62f5e921f0d7b1e880b5c1a1f1607%3Bhp=093fc3b098dc5fadef5d8ad4b225db9fb124758b"},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5513"},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698883"},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698888"},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698891"},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698892"},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698901"}],"problemTypes":[{"descriptions":[{"type":"text","lang":"en","description":"n/a"}]}],"datePublic":"2018-02-24T00:00:00.000Z"},"adp":[{"metrics":[{"cvssV3_1":{"scope":"UNCHANGED","version":"3.1","baseScore":6.3,"attackVector":"NETWORK","baseSeverity":"MEDIUM","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","integrityImpact":"LOW","userInteraction":"NONE","attackComplexity":"LOW","availabilityImpact":"LOW","privilegesRequired":"LOW","confidentialityImpact":"LOW"}},{"other":{"type":"ssvc","content":{"timestamp":"2024-07-12T14:08:09.932447Z","id":"CVE-2018-1000039","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2024-07-12T14:09:09.279Z"}},{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-05T12:33:48.769Z"},"title":"CVE Program Container","references":[{"name":"GLSA-201811-15","tags":["vendor-advisory","x_transferred"],"url":"https://security.gentoo.org/glsa/201811-15"},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=4dcc6affe04368461310a21238f7e1871a752a05%3Bhp=8ec561d1bccc46e9db40a9f61310cd8b3763914e","tags":["x_transferred"]},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=71ceebcf56e682504da22c4035b39a2d451e8ffd%3Bhp=7f82c01523505052615492f8e220f4348ba46995","tags":["x_transferred"]},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5492","tags":["x_transferred"]},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5521","tags":["x_transferred"]},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5604","tags":["x_transferred"]},{"url":"http://git.ghostscript.com/?p=mupdf.git%3Ba=commitdiff%3Bh=f597300439e62f5e921f0d7b1e880b5c1a1f1607%3Bhp=093fc3b098dc5fadef5d8ad4b225db9fb124758b","tags":["x_transferred"]},{"url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5513","tags":["x_transferred"]},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698883","tags":["x_transferred"]},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698888","tags":["x_transferred"]},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698891","tags":["x_transferred"]},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698892","tags":["x_transferred"]},{"url":"https://bugs.ghostscript.com/show_bug.cgi?id=698901","tags":["x_transferred"]}]}]},"dataVersion":"5.1"}