Impact
The vulnerability in Artifex MuPDF up to version 1.28.0 stems from the fz_subset_cff_for_gids function in subset-cff.c, which performs an out-of-bounds read when processing certain PDF documents. This flaw can leak internal memory data and is classified as a buffer over-read (CWE-119) and an out-of-bounds read (CWE-125). The weakness potentially allows a local attacker to read unintended data, but it does not provide a remote code execution path.
Affected Systems
Artifex MuPDF, previous to 1.28.0. No other vendors or product variants are mentioned in the advisory, and the flaw is reported only in the subset-cff.c component of the CFF Index Handler.
Risk and Exploitability
The CVSS score of 4.8 indicates moderate severity, and the EPSS score is unavailable, suggesting limited exploitation probability. The flaw requires local execution of the vulnerable binary. The public disclosure indicates the existence of an exploit, but it is confined to users with local access, and it has not been featured in the CISA KEV catalog.
OpenCVE Enrichment