{"id":"CVE-2019-7321","details":"Usage of an uninitialized variable in the function fz_load_jpeg in Artifex MuPDF 1.14 can result in a heap overflow vulnerability that allows an attacker to execute arbitrary code.","modified":"2026-08-07T16:35:36.626868Z","published":"2019-06-13T18:29:00.730Z","references":[{"type":"WEB","url":"https://bugs.ghostscript.com/show_bug.cgi?id=700560"},{"type":"WEB","url":"https://cgit.ghostscript.com/cgi-bin/cgit.cgi/mupdf.git/commit/?id=2be83b57e77938fddbb06bdffb11979ad89a9c7d"},{"type":"FIX","url":"https://github.com/ereisr00/bagofbugz/tree/master/MuPDF/700560"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/artifexsoftware/mupdf","events":[{"introduced":"7f77313e6d60fc917146b80cce2f9c1ab0152349"},{"last_affected":"7f77313e6d60fc917146b80cce2f9c1ab0152349"}],"database_specific":{"source":"CPE_STRING","cpe":"cpe:2.3:a:artifex:mupdf:1.14.0:*:*:*:*:*:*:*","extracted_events":[{"introduced":"1.14.0"},{"last_affected":"1.14.0"}]}}],"versions":["1.14.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-7321.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}