Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-chrr-fcqm-pgv4

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

EPSS

Процентиль: 90%
0.05355
Низкий

Дефекты

CWE-94

Связанные уязвимости

ubuntu
около 12 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

redhat
почти 13 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

nvd
около 12 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

debian
около 12 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDr ...

EPSS

Процентиль: 90%
0.05355
Низкий

Дефекты

CWE-94