In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::readrleraw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "djview"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "djview3"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "djvulibre-bin"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "djvulibre-desktop"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "djvuserve"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "libdjvulibre-dev"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "libdjvulibre-text"
        },
        {
            "binary_version": "3.5.27.1-5ubuntu0.1",
            "binary_name": "libdjvulibre21"
        }
    ]
}
          {
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "djview"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "djview3"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "djvulibre-bin"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "djvulibre-desktop"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "djvuserve"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "libdjvulibre-dev"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "libdjvulibre-text"
        },
        {
            "binary_version": "3.5.27.1-8ubuntu0.1",
            "binary_name": "libdjvulibre21"
        }
    ]
}