CVE
- Id
- 104705
- CVE No.
- CVE-2017-7885
- Status
- Candidate
- Description
- Artifex jbig2dec 0.13 has a heap-based buffer over-read leading to denial of service (application crash) or disclosure of sensitive information from process memory, because of an integer overflow in the jbig2_decode_symbol_dict function in jbig2_symbol_dict.c in libjbig2dec.a during operation on a crafted .jb2 file.
- Phase
- Assigned (20170416)
- Votes
- None (candidate not yet proposed)
- Comments