CVE Vulnerabilities

CVE-2010-2643

Published: Jan 07, 2011 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
5.1 MODERATE
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the TFM font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

Affected Software

NameVendorStart VersionEnd Version
EvinceRedhat0.1 (including)0.1 (including)
EvinceRedhat0.2 (including)0.2 (including)
EvinceRedhat0.3 (including)0.3 (including)
EvinceRedhat0.4 (including)0.4 (including)
EvinceRedhat0.5 (including)0.5 (including)
EvinceRedhat0.6 (including)0.6 (including)
EvinceRedhat0.7 (including)0.7 (including)
EvinceRedhat0.8 (including)0.8 (including)
EvinceRedhat0.9 (including)0.9 (including)
EvinceRedhat2.19 (including)2.19 (including)
EvinceRedhat2.20 (including)2.20 (including)
EvinceRedhat2.21 (including)2.21 (including)
EvinceRedhat2.22 (including)2.22 (including)
EvinceRedhat2.23 (including)2.23 (including)
EvinceRedhat2.24 (including)2.24 (including)
EvinceRedhat2.25 (including)2.25 (including)
EvinceRedhat2.26 (including)2.26 (including)
EvinceRedhat2.27 (including)2.27 (including)
EvinceRedhat2.28 (including)2.28 (including)
EvinceRedhat2.29 (including)2.29 (including)
EvinceRedhat2.29.92 (including)2.29.92 (including)
EvinceRedhat2.30 (including)2.30 (including)
EvinceRedhat2.30.2 (including)2.30.2 (including)
EvinceRedhat2.30.3 (including)2.30.3 (including)
EvinceRedhat2.31 (including)2.31 (including)
EvinceRedhat2.31.1 (including)2.31.1 (including)
EvinceRedhat2.31.2 (including)2.31.2 (including)
EvinceRedhat2.31.4 (including)2.31.4 (including)
EvinceRedhat2.31.4.1 (including)2.31.4.1 (including)
EvinceRedhat2.31.6 (including)2.31.6 (including)
EvinceRedhat2.31.6.1 (including)2.31.6.1 (including)
EvinceRedhat2.31.90 (including)2.31.90 (including)
EvinceRedhat2.31.92 (including)2.31.92 (including)
EvinceRedhat2.32 (including)2.32 (including)
Red Hat Enterprise Linux 6RedHatevince-0:2.28.2-14.el6_0.1*
EvinceUbuntudapper*
EvinceUbuntudevel*
EvinceUbuntuhardy*
EvinceUbuntukarmic*
EvinceUbuntulucid*
EvinceUbuntumaverick*
EvinceUbuntuupstream*

References