Show filters
20 Total Results
Displaying 11-20 of 20
Sort by:
Attacker Value
Unknown

CVE-2019-15143

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
Attacker Value
Unknown

CVE-2019-15142

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application crash in GStringRep::strdup in libdjvu/GString.cpp caused by a heap-based buffer over-read) by crafting a DJVU file.
Attacker Value
Unknown

CVE-2019-15144

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h.
Attacker Value
Unknown

CVE-2017-12443

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The mdjvu_bitmap_pack_row function in base/4bitmap.c in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2017-12444

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The mdjvu_bitmap_get_bounding_box function in base/4bitmap.c in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2017-12442

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The row_is_empty function in base/4bitmap.c:272 in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2017-12445

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The JB2BitmapCoder::code_row_by_refinement function in jb2/bmpcoder.cpp in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2017-12441

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The row_is_empty function in base/4bitmap.c:274 in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2012-6535

Disclosure Date: December 02, 2013 (last updated October 05, 2023)
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
0
Attacker Value
Unknown

CVE-2008-4922

Disclosure Date: November 04, 2008 (last updated October 04, 2023)
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.
0