Use-After-Free Vulnerability in SumatraPDF Reader by SumatraPDF
CVE-2013-2830

7.8HIGH

Key Information:

Vendor
CVE Published:
8 February 2018

What is CVE-2013-2830?

A use-after-free vulnerability in SumatraPDF Reader versions 2.x prior to 2.2.1 can be exploited by remote attackers to execute arbitrary code. This occurs when the software improperly manages memory, particularly when processing crafted PDF files, leading to serious security implications for users. As such, it is essential to ensure that you are using the latest version of SumatraPDF Reader to mitigate these risks.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.