CVE-2017-5628

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
30/01/2017
Last modified:
20/04/2025

Description

An issue was discovered in Artifex Software, Inc. MuJS before 8f62ea10a0af68e56d5c00720523ebcba13c2e6a. The MakeDay function in jsdate.c does not validate the month, leading to an integer overflow when parsing a specially crafted JS file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:artifex:mujs:*:*:*:*:*:*:*:* 2017-01-24 (excluding)