← Vulnerability feed

Vulnerability record · CVE-2017-1000159 · published 27 November 2017

CVE-2017-1000159: Gnome evince os command injection vulnerability

Gnome · Evince

Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.

7.8 CVSS 3.0 High EPSS 1.4% · top 28.5% CWE-78 · OS command injection
7.8CVSS 3.0 base score, v2 4.6
1.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
14References
17 Jun 2026Last modified by NVD

Description

Command injection in evince via filename when printing to PDF. This affects versions earlier than 3.25.91.

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-1000159 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2019-1010006Gnome evince integer overflow vulnerabilityEvince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attac…EPSS 2.1%7.8CVE-2017-1000083GNOME Evince comic book backend command injection via crafted .cbt fileThe comic book backend in GNOME Evince before 3.24.1 mishandles filenames inside .cbt (TAR) archives, allowing a filename that begins with a command-…EPSS 51%analysed6.8CVE-2011-5244Gnome evince vulnerabilityMultiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME ev…EPSS 3.4%6.8CVE-2011-0433Gnome evince memory buffer overflow vulnerabilityHeap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow…EPSS 4.2%5.5CVE-2013-3718Gnome evince improper input validation vulnerabilityevince is missing a check on number of pages which can lead to a segmentation faultEPSS 1.1%5.5CVE-2019-11459Gnome evince use of uninitialized resource vulnerabilityThe tiff_document_render() and tiff_document_get_thumbnail() functions in the TIFF document backend in GNOME Evince through 3.32.0 did not handle err…EPSS 1.4%8.8CVE-2026-86950Apple ipados out-of-bounds write vulnerabilityAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, …KEVEPSS 0.81%8.8CVE-2026-53266Linux kernel ebtables SNAT out-of-bounds write in ARP rewriteThe ebtables SNAT target rewrites the ARP sender hardware address via skb_store_bits() without first making that range writable. When the ARP SHA byt…KEVEPSS 0.65%analysed

Source: NIST National Vulnerability Database (record CVE-2017-1000159), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.