Fedora 29: evince Security Update
Summary
Evince is simple multi-page document viewer. It can display and print
Portable Document Format (PDF), PostScript (PS) and Encapsulated PostScript
(EPS) files. When supported by the document format, evince allows searching
for text, copying text to the clipboard, hypertext navigation,
table-of-contents bookmarks and editing of forms.
Support for other document formats such as DVI and DJVU can be added by
installing additional backends.
Security fix for CVE-2019-11459.
* Tue Jun 11 2019 Marek Kasik
- Handle failure from TIFFReadRGBAImageOriented
- Resolves: #1716298
* Fri Jan 11 2019 Marek Kasik
- Require synctex 1.19 during build to not use the bundled one
- Related: #1595910
* Sat Nov 10 2018 Kalev Lember
- Obsolete evince-browser-plugin (#1644960)
* Fri Oct 26 2018 Kalev Lember
- Update to 3.30.2
[ 1 ] Bug #1716295 - CVE-2019-11459 evince: uninitialized memory use in function tiff_document_render() and tiff_document_get_thumbnail()
https://bugzilla.redhat.com/show_bug.cgi?id=1716295
su -c 'dnf upgrade --advisory FEDORA-2019-ff2b5b5b47' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/
Change Log
References