DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2844-1 | djvulibre security update |
EUVD |
EUVD-2012-6383 | DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file. |
Ubuntu USN |
USN-2056-1 | DjVuLibre vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T21:28:40.111Z
Reserved: 2013-03-08T00:00:00
Link: CVE-2012-6535
No data.
Status : Deferred
Published: 2013-12-02T22:55:03.240
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-6535
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN