{"id":"CVE-2017-5627","details":"An issue was discovered in Artifex Software, Inc. MuJS before 4006739a28367c708dea19aeb19b8a1a9326ce08. The jsR_setproperty function in jsrun.c lacks a check for a negative array length. This leads to an integer overflow in the js_pushstring function in jsrun.c when parsing a specially crafted JS file.","modified":"2026-09-30T08:00:37.734872750Z","published":"2017-01-30T04:59:00.673Z","related":["openSUSE-SU-2024:11068-1"],"database_specific":{"unresolved_ranges":[{"extracted_events":[{"fixed":"2017-01-24"}],"source":"CPE_RANGE","vendor_product":"artifex:mujs","cpes":["cpe:2.3:a:artifex:mujs:*:*:*:*:*:*:*:*"]}]},"references":[{"type":"WEB","url":"http://git.ghostscript.com/?p=mujs.git%3Bh=4006739a28367c708dea19aeb19b8a1a9326ce08"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/95856"},{"type":"REPORT","url":"https://bugs.ghostscript.com/show_bug.cgi?id=697497"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/ccxvii/mujs","events":[{"introduced":"0"},{"fixed":"4006739a28367c708dea19aeb19b8a1a9326ce08"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5627.json","vanir_signatures":[{"deprecated":false,"digest":{"line_hashes":["98204507827475878758503411203823921052","219837275049235295249417233581478269132","221034644089316709210878260085049884179","12574604242465483557562251697909691732"],"threshold":0.9},"id":"CVE-2017-5627-036d8818","signature_type":"Line","signature_version":"v1","source":"https://github.com/ccxvii/mujs/commit/4006739a28367c708dea19aeb19b8a1a9326ce08","target":{"file":"jsrun.c"}},{"signature_type":"Function","signature_version":"v1","source":"https://github.com/ccxvii/mujs/commit/4006739a28367c708dea19aeb19b8a1a9326ce08","target":{"function":"jsR_setproperty","file":"jsrun.c"},"deprecated":false,"digest":{"function_hash":"39265153859424327921086893734680931786","length":1769},"id":"CVE-2017-5627-175b8eb6"}],"vanir_signatures_modified":"2026-09-30T08:00:37Z"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}