Multiple Remote Code Execution Vulnerabilities in Evince
Release date:
Updated on:
Affected Systems:
GNOME Evince 2.32
GNOME Evince 2.23
GNOME Evince 0.6.1
GNOME Evince 0.5.2
GNOME Evince 0.4
GNOME Evince 0.1.5
Description:
--------------------------------------------------------------------------------
Bugtraq id: 47168
Cve id: CVE-2010-2640, CVE-2010-2641, CVE-2010-2642, CVE-2010-2643
Evince is a tool for viewing PDF, PostScript, DjVu, TIFF, and DVI documents in GNOME desktop environments.
Evince has a remote code execution vulnerability. Attackers can exploit this vulnerability to execute arbitrary code.
<* Source: Marc Deslauriers (marc.deslauriers@canonical.com)
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
GNOME
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.gnome.org/