cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2013-3718,https://securityvulnerability.io/vulnerability/CVE-2013-3718,,evince is missing a check on number of pages which can lead to a segmentation fault,Gnome,Evince,5.5,MEDIUM,0.0015999999595806003,false,,false,false,false,,,false,false,,2019-11-01T12:24:33.000Z,0 CVE-2019-11459,https://securityvulnerability.io/vulnerability/CVE-2019-11459,,"The tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince through 3.32.0 did not handle errors from TIFFReadRGBAImageOriented(), leading to uninitialized memory use when processing certain TIFF image files.",Gnome,Evince,5.5,MEDIUM,0.009050000458955765,false,,false,false,false,,,false,false,,2019-04-22T20:26:32.000Z,0 CVE-2017-1000159,https://securityvulnerability.io/vulnerability/CVE-2017-1000159,,Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.,Gnome,Evince,7.8,HIGH,0.0006399999838322401,false,,false,false,false,,,false,false,,2017-11-27T15:00:00.000Z,0 CVE-2017-1000083,https://securityvulnerability.io/vulnerability/CVE-2017-1000083,,"backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a ""--"" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.",Gnome,Evince,7.8,HIGH,0.2531200051307678,false,,false,false,true,2018-10-30T12:22:41.000Z,true,false,false,,2017-09-05T06:00:00.000Z,0