Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-6535

Опубликовано: 02 дек. 2013
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:djvulibre_project:djvulibre:*:*:*:*:*:*:*:*
Версия до 3.5.25 (включая)
cpe:2.3:a:djvulibre_project:djvulibre:3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.4:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.5:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.6:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.7:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.8:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.9:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.10:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.11:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.12:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.13:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.14:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.15:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.16:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.17:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.18:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.19:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.20:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.21:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.22:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.23:*:*:*:*:*:*:*
cpe:2.3:a:djvulibre_project:djvulibre:3.5.24:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05355
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-94

Связанные уязвимости

ubuntu
около 12 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

redhat
почти 13 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

debian
около 12 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDr ...

github
больше 3 лет назад

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

EPSS

Процентиль: 90%
0.05355
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-94