First published: Fri Nov 01 2019(Updated: )
evince is missing a check on number of pages which can lead to a segmentation fault
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNOME evince | =3.8.2 | |
GNOME evince | =3.9.2 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
openSUSE openSUSE | =13.1 | |
Redhat Enterprise Linux | =5.0 | |
debian/evince | 3.38.2-1 43.1-2 46.3.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3718 is a vulnerability in evince that allows an attacker to cause a segmentation fault by exploiting a missing check on the number of pages.
The severity of CVE-2013-3718 is medium with a CVSS score of 5.5.
CVE-2013-3718 affects evince by exploiting a missing check on the number of pages, leading to a segmentation fault.
Yes, updating evince to version 3.30.2-3+deb10u1, 3.38.2-1, 43.1-2, or 45.0-1 will fix CVE-2013-3718.
You can find more information about CVE-2013-3718 at the following references: [1](http://bugzilla.gnome.org/show_bug.cgi?id=701302), [2](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-3718), [3](https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-3718).