MuPDF: Multiple vulnerabilities Multiple vulnerabilities have been found in MuPDF, the worst of which allows remote attackers to execute arbitrary code. mupdf 2017-02-19 2017-02-19 589826 590480 608702 608712 remote 1.10a-r1 1.10a-r1

A lightweight PDF, XPS, and E-book viewer.

Multiple vulnerabilities have been discovered in MuPDF. Please review the CVE identifiers referenced below for details.

A remote attacker could entice a user to open a specially crafted PDF document using MuPDF possibly resulting in the execution of arbitrary code, with the privileges of the process, or a Denial of Service condition.

There is no known workaround at this time.

All MuPDF users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=app-text/mupdf-1.10a-r1"
CVE-2016-6265 CVE-2016-6525 CVE-2017-5896 b-man whissi