CVE-2017-5628: Artifex Mujs
High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.
An issue was discovered in Artifex Software, Inc. MuJS before 8f62ea10a0af68e56d5c00720523ebcba13c2e6a. The MakeDay function in jsdate.c does not validate the month, leading to an integer overflow when parsing a specially crafted JS file.
Affected products
- Artifex Mujs: before 2017-01-24 (fixed in 2017-01-24)
Published 2017-01-30. Last modified 2026-06-17.