Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Low

CVE-2017-1000083

Disclosure Date: September 05, 2017 (last updated November 26, 2024)
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
0
Attacker Value
Unknown

CVE-2013-3718

Disclosure Date: November 01, 2019 (last updated November 27, 2024)
evince is missing a check on number of pages which can lead to a segmentation fault
Attacker Value
Unknown

CVE-2019-1010006

Disclosure Date: July 15, 2019 (last updated February 02, 2024)
Evince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attack vector is: Victim must open a crafted PDF file. The issue occurs because of an incorrect integer overflow protection mechanism in tiff_document_render and tiff_document_get_thumbnail.
Attacker Value
Unknown

CVE-2019-11459

Disclosure Date: April 22, 2019 (last updated November 08, 2023)
The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince through 3.32.0 did not handle errors from TIFFReadRGBAImageOriented(), leading to uninitialized memory use when processing certain TIFF image files.
Attacker Value
Unknown

CVE-2017-1000159

Disclosure Date: November 27, 2017 (last updated November 26, 2024)
Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.
0
Attacker Value
Unknown

CVE-2011-0433

Disclosure Date: November 19, 2012 (last updated October 05, 2023)
Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, a different vulnerability than CVE-2010-2642.
0
Attacker Value
Unknown

CVE-2011-5244

Disclosure Date: November 19, 2012 (last updated October 05, 2023)
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, different vulnerabilities than CVE-2010-2642 and CVE-2011-0433.
0
Attacker Value
Unknown

CVE-2010-2640

Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Array index error in the PK font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0
Attacker Value
Unknown

CVE-2010-2643

Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0
Attacker Value
Unknown

CVE-2010-2642

Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
0