
Cloud Vulnerability DB
A community-led vulnerabilities database
A floating point exception (divide-by-zero) vulnerability was discovered in mupdf version 1.23.4 in the function pnm_binary_read_image() of load-pnm.c when fz_colorspace_n returns zero (NVD, Debian Tracker).
The vulnerability exists in the pnm_binary_read_image() function within the load-pnm.c file of MuPDF 1.23.4. The issue occurs specifically when fz_colorspace_n returns zero, leading to a divide-by-zero condition. The vulnerability has been assigned a CVSS v3.1 Base Score of 7.5 (HIGH) with the vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H (NVD).
The vulnerability can lead to a floating point exception due to division by zero, potentially causing a denial of service condition in affected systems running MuPDF 1.23.4 (NVD).
Multiple versions of MuPDF in various distributions remain vulnerable, including versions in Debian bullseye, bookworm, sid, and trixie. As of the latest reports, no official fix has been released (Debian Tracker).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."