First published: Tue Dec 01 2009(Updated: )
Multiple stack-based buffer overflows in pdf_shade4.c in MuPDF before commit 20091125231942, as used in SumatraPDF before 1.0.1, allow remote attackers to cause a denial of service and possibly execute arbitrary code via a /Decode array for certain types of shading that are not properly handled by the (1) pdf_loadtype4shade, (2) pdf_loadtype5shade, (3) pdf_loadtype6shade, and (4) pdf_loadtype7shade functions. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sumatrapdfreader Sumatrapdf | =0.4 | |
Sumatrapdfreader Sumatrapdf | =0.1 | |
Sumatrapdfreader Sumatrapdf | =0.2 | |
Sumatrapdfreader Sumatrapdf | =0.3 | |
Sumatrapdfreader Sumatrapdf | =0.5 | |
Sumatrapdfreader Sumatrapdf | =0.6 | |
Sumatrapdfreader Sumatrapdf | =0.7 | |
Sumatrapdfreader Sumatrapdf | =0.8 | |
Sumatrapdfreader Sumatrapdf | =0.8.1 | |
Sumatrapdfreader Sumatrapdf | =0.9 | |
Sumatrapdfreader Sumatrapdf | =0.9.1 | |
Sumatrapdfreader Sumatrapdf | =0.9.2 | |
Sumatrapdfreader Sumatrapdf | =0.9.3 | |
Sumatrapdfreader Sumatrapdf | =0.9.4 | |
Sumatrapdfreader Sumatrapdf | <=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.