Felix Wilhelm discovered that Evince did not safely invoke tar when handling tar comic book (cbt) files. An attacker could use this to construct a malicious cbt comic book format file that, when opened in Evince, executes arbitrary code. Please note that this update disables support for cbt files in Evince.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "evince", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "evince-common", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "evince-dbg", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "evince-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "evince-gtk", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "evince-gtk-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "gir1.2-evince-3.0", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "gir1.2-evince-3.0-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevdocument3-4", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevdocument3-4-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevince-dev", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevince-dev-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevview3-3", "binary_version": "3.10.3-0ubuntu10.3" }, { "binary_name": "libevview3-3-dbgsym", "binary_version": "3.10.3-0ubuntu10.3" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "evince", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "evince-common", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "evince-dbg", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "evince-dbgsym", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "evince-gtk", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "gir1.2-evince-3.0", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "libevdocument3-4", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "libevdocument3-4-dbgsym", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "libevince-dev", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "libevview3-3", "binary_version": "3.18.2-1ubuntu4.1" }, { "binary_name": "libevview3-3-dbgsym", "binary_version": "3.18.2-1ubuntu4.1" } ] }