CVE-2012-6535
published 2013-12-02CVE-2012-6535: DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a…
PriorityP344critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.64%
90.7th percentile
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | djvulibre | < djvulibre 3.5.25.3-1 (bookworm) | djvulibre 3.5.25.3-1 (bookworm) |
| djvulibre_project | djvulibre | <= 3.5.25 | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
| djvulibre_project | djvulibre | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
DjVuLibre vulnerability
vendor_ubuntu·2013-12-16
CVE-2012-6535 DjVuLibre vulnerability
Title: DjVuLibre vulnerability
Summary: DjVuLibre could be made to crash or run programs as your login if it opened
a specially crafted file.
It was discovered that DjVuLibre incorrectly handled certain memory
operations. If a user or automated system were tricked into processing a
specially crafted DjVu file, applications could be made to crash, resulting
in a denial of service, or possibly execute arbitrary code.
Instructions: After a standard system update you need to restart your session to make
all the necessary changes.
Red Hat
djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
vendor_redhat·2013-03-19·CVSS 9.3
CVE-2012-6535 [CRITICAL] djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
Package: djvulibre (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2012-6535: djvulibre - DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and o...
vendor_debian·2012·CVSS 9.3
CVE-2012-6535 [CRITICAL] CVE-2012-6535: djvulibre - DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and o...
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
Scope: local
bookworm: resolved (fixed in 3.5.25.3-1)
bullseye: resolved (fixed in 3.5.25.3-1)
forky: resolved (fixed in 3.5.25.3-1)
sid: resolved (fixed in 3.5.25.3-1)
trixie: resolved (fixed in 3.5.25.3-1)
GHSA
GHSA-chrr-fcqm-pgv4: DjVuLibre before 3
ghsa_unreviewed·2022-05-17
CVE-2012-6535 [HIGH] CWE-94 GHSA-chrr-fcqm-pgv4: DjVuLibre before 3
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
OSV
CVE-2012-6535: DjVuLibre before 3
osv·2013-12-02·CVSS 9.3
CVE-2012-6535 [CRITICAL] CVE-2012-6535: DjVuLibre before 3
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file [epel-6]
bugzilla·2013-12-17·CVSS 9.3
CVE-2012-6535 [CRITICAL] CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file [epel-6]
CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
ep
Bugzilla
CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
bugzilla·2013-12-17·CVSS 9.3
CVE-2012-6535 [CRITICAL] CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
CVE-2012-6535 djvulibre: DoS or arbitrary code execution via specially crafted DjVu file
DjVuLibre was found to have a vulnerability, where it incorrectly handled certain memory operations, which could be exploited by an attacker via a specially crafted DjVu (.djv) file, which when executed by the user or an automated system, could lead to crashing of the application (DoS) or possibly execute arbitrary code.
The issue is said to be fixed in DjVuLibre 3.5.25.3.
References:
http://www.ubuntu.com/usn/usn-2056-1/
Discussion:
Created djvulibre tracking bugs for this issue:
Affects: epel-6 [bug 1043823]
---
djvulibre-3.5.25.3-11.el6 has been pushed to the Fedora EPEL 6 stable repository. If problems still persist, please make note of it in this bug report.
2013-12-02
Published