Количество 13
Количество 13
GHSA-c796-cmwx-5c79
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
CVE-2017-1000083
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
CVE-2017-1000083
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
CVE-2017-1000083
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
CVE-2017-1000083
backend/comics/comics-document.c (aka the comic book backend) in GNOME ...
openSUSE-SU-2017:3431-1
Security update for evince
openSUSE-SU-2017:1933-1
Security update for evince
SUSE-SU-2017:3428-1
Security update for evince
SUSE-SU-2017:2390-1
Security update for evince
SUSE-SU-2017:1894-1
Security update for evince
SUSE-SU-2017:1893-1
Security update for evince
ELSA-2017-2388
ELSA-2017-2388: evince security update (IMPORTANT)
BDU:2018-00111
Уязвимость программного средства просмотра документов Evince, связанная с непринятием мер по нейтрализации специальных элементов, позволяющая нарушителю выполнить произвольные команды
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-c796-cmwx-5c79 backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename. | CVSS3: 7.8 | 77% Высокий | больше 3 лет назад | |
CVE-2017-1000083 backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename. | CVSS3: 7.8 | 77% Высокий | около 8 лет назад | |
CVE-2017-1000083 backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename. | CVSS3: 7.1 | 77% Высокий | больше 8 лет назад | |
CVE-2017-1000083 backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename. | CVSS3: 7.8 | 77% Высокий | около 8 лет назад | |
CVE-2017-1000083 backend/comics/comics-document.c (aka the comic book backend) in GNOME ... | CVSS3: 7.8 | 77% Высокий | около 8 лет назад | |
openSUSE-SU-2017:3431-1 Security update for evince | 77% Высокий | почти 8 лет назад | ||
openSUSE-SU-2017:1933-1 Security update for evince | 77% Высокий | больше 8 лет назад | ||
SUSE-SU-2017:3428-1 Security update for evince | 77% Высокий | почти 8 лет назад | ||
SUSE-SU-2017:2390-1 Security update for evince | 77% Высокий | около 8 лет назад | ||
SUSE-SU-2017:1894-1 Security update for evince | 77% Высокий | больше 8 лет назад | ||
SUSE-SU-2017:1893-1 Security update for evince | 77% Высокий | больше 8 лет назад | ||
ELSA-2017-2388 ELSA-2017-2388: evince security update (IMPORTANT) | больше 8 лет назад | |||
BDU:2018-00111 Уязвимость программного средства просмотра документов Evince, связанная с непринятием мер по нейтрализации специальных элементов, позволяющая нарушителю выполнить произвольные команды | CVSS3: 7.8 | 77% Высокий | больше 8 лет назад |
Уязвимостей на страницу