CVE-2018-1000038: Artifex Mupdf
High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.
In Artifex MuPDF 1.12.0 and earlier, a stack buffer overflow in function pdf_lookup_cmap_full in pdf/pdf-cmap.c could allow an attacker to execute arbitrary code via a crafted file.
Affected products
- Artifex Mupdf: up to and including 1.12.0
Published 2018-05-24. Last modified 2026-06-17.