Debian LTS: DLA-1882-1: atril security update

    Date13 Aug 2019
    CategoryDebian LTS
    Posted ByLinuxSecurity Advisories
    A few issues were found in Atril, the MATE document viewer. CVE-2017-1000159
    Package        : atril
    Version        : 1.8.1+dfsg1-4+deb8u2
    CVE ID         : CVE-2017-1000159 CVE-2019-11459 CVE-2019-1010006
    A few issues were found in Atril, the MATE document viewer.
        When printing from DVI to PDF, the dvipdfm tool was called without
        properly sanitizing the filename, which could lead to a command
        injection attack via the filename.
        The tiff_document_render() and tiff_document_get_thumbnail() did
        not check the status of TIFFReadRGBAImageOriented(), leading to
        uninitialized memory access if that funcion fails.
        Some buffer overflow checks were not properly done, leading to
        application crash or possibly arbitrary code execution when
        opening maliciously crafted files.
    For Debian 8 "Jessie", these problems have been fixed in version
    We recommend that you upgrade your atril packages.
    Further information about Debian LTS security advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at:
    You are not authorised to post comments.

    Comments powered by CComment

    LinuxSecurity Poll

    What do you think of the articles on LinuxSecurity?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 3 answer(s).
    [{"id":"87","title":"Excellent, don't change a thing!","votes":"65","type":"x","order":"1","pct":57.52,"resources":[]},{"id":"88","title":"Should be more technical","votes":"15","type":"x","order":"2","pct":13.27,"resources":[]},{"id":"89","title":"Should include more HOWTOs","votes":"33","type":"x","order":"3","pct":29.2,"resources":[]}]["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"]["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"]350

    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.