Use After Free Vulnerability in MuPDF by Artifex Software
CVE-2020-21896
5.5MEDIUM
What is CVE-2020-21896?
A Use After Free vulnerability exists in the svg_dev_text_span_as_paths_defs function located in source/fitz/svg-device.c of MuPDF 1.16.0. This flaw permits remote attackers to create a denial of service by exploiting the opening of specially crafted PDF files. Users of the affected version should evaluate potential risks and consider updates or mitigation strategies.