CNNVD-202602-1265 Information

CNNVD ID

CNNVD-202602-1265

CVE-2026-25880

  • CNNVD Published: 2026-02-09

Description (Chinese)

sumatrapdf是sumatrapdfreader开源的一个PDF阅读器。 SumatraPDF 3.5.2及之前版本存在代码问题漏洞,该漏洞源于PDF阅读器允许执行与打开的PDF位于同一目录中的恶意二进制文件,可能导致任意代码执行。

Description (English)

Sumatrapdf is a PDF reader for sumatrapdfreader open source. SumatraPDF 3.5.2 and previous versions had a code problem loophole, which stemmed from the fact that the PDF reader allowed the execution of a malicious binary file in the same directory as the opened PDF, which could result in any code execution.

Vulnerability Type

代码问题

Affected Vendor

sumatrapdfreader

Published

2026-02-09

Last Modified

2026-02-24

References

https://github.com/sumatrapdfreader/sumatrapdf/security/advisories/GHSA-5x4h-247q-px37

Patch

https://www.sumatrapdfreader.org/download-free-pdf-viewer

Share on: