Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2643

Опубликовано: 05 янв. 2011
Источник: redhat
CVSS2: 5.1
EPSS Низкий

Описание

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

Отчет

This issue did not affect the versions of evince as shipped with Red Hat Enterprise Linux 5.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5evinceNot affected
Red Hat Enterprise Linux 6evinceFixedRHSA-2011:000906.01.2011

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=666321evince: Integer overflow in DVI file TFM font parser

EPSS

Процентиль: 92%
0.07841
Низкий

5.1 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 15 лет назад

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

nvd
почти 15 лет назад

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

debian
почти 15 лет назад

Integer overflow in the TFM font parser in the dvi-backend component i ...

github
больше 3 лет назад

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

oracle-oval
больше 14 лет назад

ELSA-2011-0009: evince security update (MODERATE)

EPSS

Процентиль: 92%
0.07841
Низкий

5.1 Medium

CVSS2