CVE-2016-9294

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
12/11/2016
Last modified:
12/04/2025

Description

Artifex Software, Inc. MuJS before 5008105780c0b0182ea6eda83ad5598f225be3ee allows context-dependent attackers to conduct "denial of service (application crash)" attacks by using the "malformed labeled break/continue in JavaScript" approach, related to a "NULL pointer dereference" issue affecting the jscompile.c component.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:artifex:mujs:*:*:*:*:*:*:*:* 2016-10-26 (excluding)