First published: Tue Feb 18 2025(Updated: )
It was discovered that Atril incorrectly handled certain PDF files. An attacker could possibly use this issue to cause a denial of service or to execute arbitrary code. This issue only affected Ubuntu 16.04 LTS. (CVE-2019-1010006) Andy Nguyen discovered that Atril incorrectly handled certain images. An attacker could possibly use this issue to expose sensitive information. This issue only affected Ubuntu 16.04 LTS. (CVE-2019-11459) Febin Mon Saji discovered that Atril incorrectly handled certain compressed files. A remote attacker could possibly use this issue to cause a denial of service or to execute arbitrary code. (CVE-2023-51698)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/atril | <1.26.0-1ubuntu1.2 | 1.26.0-1ubuntu1.2 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/atril-common | <1.26.0-1ubuntu1.2 | 1.26.0-1ubuntu1.2 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libatrildocument3 | <1.26.0-1ubuntu1.2 | 1.26.0-1ubuntu1.2 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/atril | <1.24.0-1ubuntu0.2 | 1.24.0-1ubuntu0.2 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/atril-common | <1.24.0-1ubuntu0.2 | 1.24.0-1ubuntu0.2 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/libatrildocument3 | <1.24.0-1ubuntu0.2 | 1.24.0-1ubuntu0.2 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/atril | <1.20.1-2ubuntu2+esm2 | 1.20.1-2ubuntu2+esm2 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/atril-common | <1.20.1-2ubuntu2+esm2 | 1.20.1-2ubuntu2+esm2 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/libatrildocument3 | <1.20.1-2ubuntu2+esm2 | 1.20.1-2ubuntu2+esm2 |
Ubuntu | =18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-7274-1 is considered critical due to its potential for denial of service and arbitrary code execution.
To fix USN-7274-1, update Atril and its associated packages to the specified remedied versions.
USN-7274-1 affects Ubuntu 18.04, 20.04, and 22.04 LTS versions.
USN-7274-1 addresses a vulnerability in Atril that allows for denial of service or arbitrary code execution via malformed PDF files.
The vulnerability related to USN-7274-1 was discovered by Andy Nguyen.