CVE-2010-2640

Array index error in the PK font parser in the dvi-backend component in Evince 2.32 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:evince:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.5:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.6:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.7:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.8:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:0.9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.19:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.20:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.21:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.22:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.23:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.24:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.25:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.26:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.27:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.28:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.29:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.29.92:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.30:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.30.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.30.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.4.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.6:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.6.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.90:*:*:*:*:*:*:*
cpe:2.3:a:redhat:evince:2.31.92:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-01-07 19:00

Updated : 2023-12-10 11:03


NVD link : CVE-2010-2640

Mitre link : CVE-2010-2640

CVE.ORG link : CVE-2010-2640


JSON object : View

Products Affected

redhat

  • evince
CWE
CWE-20

Improper Input Validation