Vulnerabilities > Djvulibre Project > Djvulibre > Critical

DATE CVE VULNERABILITY TITLE RISK
2013-12-02 CVE-2012-6535 Code Injection vulnerability in Djvulibre Project Djvulibre
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
network
djvulibre-project CWE-94
critical
9.3