Known vulnerabilities in Evince
Vendor:
Gnome Development Team
Software:
Evince
Software CPE:
cpe:2.3:a:gnome:evince:*:*:*:*:*:*:*:*
Website:
https://www.gnome.org/
Total vulnerabilities:
4
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
48.4
48.3
48.2
48.1
48.0
46.3.1
46.3
46.1
46.0
45.0
44.3
43.2
44.2
44.1
44.0
42.4
41.5
43.1
43.0
42.3
42.2
42.1
42.0
41.4
40.5
41.3
41.2
41.1
41.0
40.4
3.38.3
40.3
3.36.11
40.2
40.0
40.1
3.36.10
3.38.2
3.39.2
3.36.9
3.36.8
3.38.1
3.39.1
3.38.0
3.37.90
3.37.3
3.36.7
3.36.6
3.36.5
3.36.4
3.36.3
3.37.2
3.36.2
3.37.1
3.36.1
3.36.0
3.35.92
3.34.2
3.35.1
3.30.3
3.32.1
3.34.0
3.34.1
3.32.0
3.31.91
3.31.90
3.31.4
3.31.3
3.31.2
3.31.1
3.30.2
3.30.1
3.30.0
3.29.92
3.29.91
3.29.90
3.29.1
3.28.5
3.28.4
3.28.3
3.28.2
3.28.1
3.28.0
3.27.92
3.27.91
3.26.0
3.25.92
3.25.91
3.25.4
3.24.2
3.24.1
3.22.2
3.22.1
3.22.0
3.21.92
3.21.4
3.21.3
3.20.2
3.20.1
3.20.0
3.19.92
3.18.2
3.18.1
3.18.0
3.17.92
3.17.4
3.17.3
3.17.2
3.17.1
3.16.1
3.16.0
3.15.92
3.15.90
3.15.4
3.14.2
3.14.1
3.14.0
3.13.92
3.13.91
3.13.90
3.13.3.1
3.13.3
3.12.2
3.12.1
3.12.0
3.11.92
3.11.90
3.11.3
3.11.1
3.10.3
3.10.2
3.10.0
3.9.90
3.9.5
3.9.4
3.9.3
3.9.2
3.8.3
3.8.2
3.8.0
3.7.92
3.7.90
3.7.5
3.7.4
3.7.1
3.6.1
3.6.0
3.5.92
3.5.90
3.5.5
3.5.4
3.5.3
3.5.2
3.4.0
3.3.92
3.3.90
3.3.5
3.3.4
3.3.3.1
3.3.3
3.3.2
3.2.1
3.2.0
3.1.90.1
3.1.90
3.1.2
3.0.2
3.26
3.24.8
3.25.0
3.24.0
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU29244 - Access of Uninitialized Pointer CVE-2019-11459 |
CWE-824 | Low | 3.32.1 | 25.06.2020 |
SB2019042313 SB2020071719 SB2019100321 and 8 more |
||
| #VU19257 - Memory corruption CVE-2019-1010006 |
CWE-119 | High | - | 19.07.2019 |
SB2017122216 SB2019081508 SB2020021502 and 1 more |
||
| #VU9541 - Command injection CVE-2017-1000159 |
CWE-77 | High | - | 05.12.2017 |
SB2017071413 SB2017120503 SB2018041706 and 3 more |
||
| #VU7546 - Improper Control of Generation of Code ('Code Injection') CVE-2017-1000083 |
CWE-94 | High | - | 14.07.2017 |
SB2017071410 SB2017071309 SB2017071706 and 12 more |