CVE-2021-37220 log

Source
Severity Medium
Remote Yes
Type Arbitrary code execution
Description
MuPDF before version 1.19.0 has an out-of-bounds write because the cached color converter does not properly consider the maximum key size of a hash table. This can, for example, be seen with crafted "mutool draw" input.
Group Package Affected Fixed Severity Status Ticket
AVG-2205 mupdf 1.18.0-2 1.19.0-1 Medium Fixed
References
https://bugs.ghostscript.com/show_bug.cgi?id=703791
https://git.ghostscript.com/?p=mupdf.git;a=commitdiff;h=f5712c9949d026e4b891b25837edd2edc166151f