CVE-2025-57248
15.09.2025, 16:15
A null pointer dereference vulnerability was discovered in SumatraPDF 3.5.2 during the processing of a crafted .djvu file. When the file is opened, the application crashes inside libmupdf.dll, specifically in the DataPool::has_data() function.Enginsight
| Vendor | Product | Version | 
|---|---|---|
| sumatrapdfreader | sumatrapdf | 3.5.2 | 
𝑥
= Vulnerable software versions
Common Weakness Enumeration