CyberSec.Space Logo
CVEブラウザに戻る

CVE-2009-4117

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1950%
EPSS Percentile36.98th
Published2009年12月1日
Last Modified2026年4月23日

Vulnerability Description

Multiple stack-based buffer overflows in pdf_shade4.c in MuPDF before commit 20091125231942, as used in SumatraPDF before 1.0.1, allow remote attackers to cause a denial of service and possibly execute arbitrary code via a /Decode array for certain types of shading that are not properly handled by the (1) pdf_loadtype4shade, (2) pdf_loadtype5shade, (3) pdf_loadtype6shade, and (4) pdf_loadtype7shade functions. NOTE: some of these details are obtained from third party information.

Affected Platforms (CPE)

📦
Sumatrapdfreader

Sumatrapdf

<= 1.0
📦
Sumatrapdfreader

Sumatrapdf

= 0.1
📦
Sumatrapdfreader

Sumatrapdf

= 0.2
📦
Sumatrapdfreader

Sumatrapdf

= 0.3
📦
Sumatrapdfreader

Sumatrapdf

= 0.4
📦
Sumatrapdfreader

Sumatrapdf

= 0.5
📦
Sumatrapdfreader

Sumatrapdf

= 0.6
📦
Sumatrapdfreader

Sumatrapdf

= 0.7
📦
Sumatrapdfreader

Sumatrapdf

= 0.8
📦
Sumatrapdfreader

Sumatrapdf

= 0.8.1
📦
Sumatrapdfreader

Sumatrapdf

= 0.9
📦
Sumatrapdfreader

Sumatrapdf

= 0.9.1
📦
Sumatrapdfreader

Sumatrapdf

= 0.9.2
📦
Sumatrapdfreader

Sumatrapdf

= 0.9.3
📦
Sumatrapdfreader

Sumatrapdf

= 0.9.4

References & Advisories

関連する脆弱性情報

CVE-2009-4117 Detail & Impact Analysis | CVSS 9.3 (CRITICAL) | Cyber-Sec.Space | Cyber-Sec.Space