CVE-2012-6535

EPSS 5.4%

djvulibre - arbitrary code execution

Published: 12/2/2013Modified: 4/28/2026

Description

DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.

Affected packages (2)

References (1)