CVE-2020-9359: Medium severity KDE Okular vulnerability
Published Mar 24, 2020
·Updated
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
Affected Software
6 affected components
KDE Okular<1.10.0
KDE Okular>=19.12.0<19.12.3
Debian Debian Linux=8.0
Fedoraproject Fedora=30
Fedoraproject Fedora=31
Fedoraproject Fedora=32
Remediation
Event History
Mar 24, 2020
CVE Published
via MITRE·01:29 PM
Data Sourced
via MITRE·01:29 PM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityAffected Software
Sep 10, 58461
Event
04:36 PM
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-9359.
2
What is the affected software?
The affected software is KDE Okular before version 1.10.0.
3
How does the vulnerability occur?
The vulnerability occurs when an action link in a PDF document is used to execute malicious code.
4
What is the severity of CVE-2020-9359?
The severity of CVE-2020-9359 is medium, with a CVSS score of 5.3.
5
How do I fix CVE-2020-9359?
To fix CVE-2020-9359, update KDE Okular to version 1.10.0 or higher.