Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Low
CVE-2017-1000083
Disclosure Date: September 05, 2017 (last updated November 26, 2024)
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
0
Attacker Value
Unknown
CVE-2013-3718
Disclosure Date: November 01, 2019 (last updated November 27, 2024)
evince is missing a check on number of pages which can lead to a segmentation fault
0
Attacker Value
Unknown
CVE-2019-1010006
Disclosure Date: July 15, 2019 (last updated February 02, 2024)
Evince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attack vector is: Victim must open a crafted PDF file. The issue occurs because of an incorrect integer overflow protection mechanism in tiff_document_render and tiff_document_get_thumbnail.
0
Attacker Value
Unknown
CVE-2019-11459
Disclosure Date: April 22, 2019 (last updated November 08, 2023)
The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince through 3.32.0 did not handle errors from TIFFReadRGBAImageOriented(), leading to uninitialized memory use when processing certain TIFF image files.
0
Attacker Value
Unknown
CVE-2017-1000159
Disclosure Date: November 27, 2017 (last updated November 26, 2024)
Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.
0
Attacker Value
Unknown
CVE-2011-0433
Disclosure Date: November 19, 2012 (last updated October 05, 2023)
Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, a different vulnerability than CVE-2010-2642.
0
Attacker Value
Unknown
CVE-2011-5244
Disclosure Date: November 19, 2012 (last updated October 05, 2023)
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, different vulnerabilities than CVE-2010-2642 and CVE-2011-0433.
0
Attacker Value
Unknown
CVE-2010-2640
Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Array index error in the PK font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0
Attacker Value
Unknown
CVE-2010-2643
Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0
Attacker Value
Unknown
CVE-2010-2642
Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0