CyberSec.Space Logo
Back to CVE Browser

CVE-2009-4117

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1950%
EPSS Percentile36.98th
PublishedDec 1, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

Multiple stack-based buffer overflows in pdf_shade4.c in MuPDF before commit 20091125231942, as used in SumatraPDF before 1.0.1, allow remote attackers to cause a denial of service and possibly execute arbitrary code via a /Decode array for certain types of shading that are not properly handled by the (1) pdf_loadtype4shade, (2) pdf_loadtype5shade, (3) pdf_loadtype6shade, and (4) pdf_loadtype7shade functions. NOTE: some of these details are obtained from third party information.

Affected Platforms (CPE)

πŸ“¦
Sumatrapdfreader

Sumatrapdf

<= 1.0
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.1
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.2
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.3
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.4
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.5
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.6
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.7
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.8
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.8.1
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.9
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.9.1
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.9.2
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.9.3
πŸ“¦
Sumatrapdfreader

Sumatrapdf

= 0.9.4

References & Advisories

Related Vulnerabilities