Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.
{
"binaries": [
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "evince"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "evince-common"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "evince-gtk"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "gir1.2-evince-3.0"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "libevdocument3-4"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "libevince-dev"
},
{
"binary_version": "3.10.3-0ubuntu10.4",
"binary_name": "libevview3-3"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "atril"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "atril-common"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "gir1.2-atril"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "libatrildocument-dev"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "libatrildocument3"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "libatrilview-dev"
},
{
"binary_version": "1.12.2-1ubuntu0.3",
"binary_name": "libatrilview3"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "evince"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "evince-common"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "evince-gtk"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "gir1.2-evince-3.0"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "libevdocument3-4"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "libevince-dev"
},
{
"binary_version": "3.18.2-1ubuntu4.3",
"binary_name": "libevview3-3"
}
],
"availability": "No subscription required"
}