VULNERABILITY INTELLIGENCE
CVE-2014-2013
CVSS score7.5 HIGH
EPSS probability14.79%
CISA KEVNot currently listed
Published2014-03-03
Last modified2026-06-17
Description
Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary code via a large number of entries in the ContextColor value of the Fill attribute in a Path element.