Skip to content
Noroxi

sumatrapdfreader records

13 published records for vendor sumatrapdfreader.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
7.7%
Median publish → KEV
No record has entered KEV

All records

13 records
  • CVE-2009-4117
    39Monitor

    Multiple stack-based buffer overflows in pdf_shade4.c in MuPDF before commit 20091125231942, as used in SumatraPDF before 1.0.1, allow remot

    CriticalCVSS 9.3Proof of conceptEPSS 8%

    sumatrapdfreader · sumatrapdfNov 30, 2009

  • CVE-2012-4895
    39Monitor

    Heap-based buffer overflow in SumatraPDF before 2.1 allows remote attackers to execute arbitrary code via a crafted PDF document, a differen

    CriticalCVSS 9.3No exploitEPSS 5%

    sumatrapdfreader · sumatrapdfOct 5, 2012

  • CVE-2012-4896
    39Monitor

    Heap-based buffer overflow in SumatraPDF before 2.1 allows remote attackers to execute arbitrary code via a crafted PDF document, a differen

    CriticalCVSS 9.3No exploitEPSS 5%

    sumatrapdfreader · sumatrapdfOct 5, 2012

  • CVE-2012-5340
    33Monitor

    SumatraPDF 2.1.1/MuPDF 1.0 allows remote attackers to cause an Integer Overflow in the lex_number() function via a corrupt PDF file.

    HighCVSS 7.8Proof of conceptEPSS 6%

    sumatrapdfreader · sumatrapdfJan 23, 2020

  • CVE-2013-2830
    32Monitor

    Use-after-free vulnerability in SumatraPDF Reader 2.x before 2.2.1 allows remote attackers to execute arbitrary code via a crafted PDF file.

    HighCVSS 7.8No exploitEPSS 4%

    sumatrapdfreader · sumatrapdfFeb 8, 2018

  • SumatraPDF has an Untrusted Search Path in sumatrapdf/src/AppTools.cpp

    HighCVSS 7.8No exploitEPSS 0%

    sumatrapdfreader · sumatrapdfJan 14, 2026

  • Untrusted Search Path in SumatraPDF Reader (explorer.exe on Windows)

    HighCVSS 7.8No exploitEPSS 0%

    sumatrapdfreader · sumatrapdfFeb 9, 2026

  • SumatraPDF Update MITM -> Arbitrary Code Execution

    HighCVSS 7.5Proof of conceptEPSS 0%

    sumatrapdfreader · sumatrapdfFeb 9, 2026

  • A null pointer dereference vulnerability was discovered in SumatraPDF 3.5.2 during the processing of a crafted .djvu file.

    HighCVSS 7.3No exploitEPSS 0%

    sumatrapdfreader · sumatrapdfSep 15, 2025

  • CVE-2009-1605
    22Monitor

    Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-win32 package, as used

    MediumCVSS 5.4No exploitEPSS 3%

    sumatrapdfreader · sumatrapdfMay 11, 2009

  • A buffer overflow in SumatraPDF Reader v3.4.6 allows attackers to cause a Denial of Service (DoS) via a crafted text file.

    MediumCVSS 5.5Proof of conceptEPSS 0%

    sumatrapdfreader · sumatrapdfJul 26, 2023

  • SumatraPDF has a heap out-of-bounds read in MOBI HuffDic decompressor

    MediumCVSS 5.5No exploitEPSS 0%

    sumatrapdfreader · sumatrapdfFeb 9, 2026

  • SumatraPDF's Integer Underflow in PalmDbReader Leads to Crash

    MediumCVSS 5.5No exploitEPSS 0%

    sumatrapdfreader · sumatrapdfJan 21, 2026