Vulnerability Details CVE-2009-1605
Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-win32 package, as used in SumatraPDF 0.9.3 and earlier, allows remote attackers to execute arbitrary code via a crafted PDF file. NOTE: some of these details are obtained from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 83.7%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 9.3
Products affected by CVE-2009-1605
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.1
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.2
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.3
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.4
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.5
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.6
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.7
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.8
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.8.1
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.9
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.9.1
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.9.2
-
cpe:2.3:a:sumatrapdfreader:sumatrapdf:0.9.3