Show filters
20 Total Results
Displaying 11-20 of 20
Sort by:
Attacker Value
Unknown
CVE-2019-15143
Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
0
Attacker Value
Unknown
CVE-2019-15142
Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application crash in GStringRep::strdup in libdjvu/GString.cpp caused by a heap-based buffer over-read) by crafting a DJVU file.
0
Attacker Value
Unknown
CVE-2019-15144
Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h.
0
Attacker Value
Unknown
CVE-2017-12443
Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The mdjvu_bitmap_pack_row function in base/4bitmap.c in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown
CVE-2017-12444
Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The mdjvu_bitmap_get_bounding_box function in base/4bitmap.c in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown
CVE-2017-12442
Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The row_is_empty function in base/4bitmap.c:272 in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown
CVE-2017-12445
Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The JB2BitmapCoder::code_row_by_refinement function in jb2/bmpcoder.cpp in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown
CVE-2017-12441
Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The row_is_empty function in base/4bitmap.c:274 in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown
CVE-2012-6535
Disclosure Date: December 02, 2013 (last updated October 05, 2023)
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
0
Attacker Value
Unknown
CVE-2008-4922
Disclosure Date: November 04, 2008 (last updated October 04, 2023)
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.
0