Summary: | JavaScript in PDF documents can exhaust resources | ||
---|---|---|---|
Product: | [Applications] okular | Reporter: | Jens Mueller <jens.a.mueller+kde> |
Component: | PDF backend | Assignee: | Okular developers <okular-devel> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | aacid, nate |
Priority: | NOR | ||
Version: | 1.3.3 | ||
Target Milestone: | --- | ||
Platform: | Other | ||
OS: | Linux | ||
Latest Commit: | Version Fixed In: | 20.04.0 | |
Attachments: |
Trivial PoC (01)
Trivial PoC (02) |
Description
Jens Mueller
2020-01-23 16:49:16 UTC
Created attachment 125335 [details]
Trivial PoC (01)
Created attachment 125336 [details]
Trivial PoC (02)
yeah, it seems that sadly the JS engine we use doesn't support timing out (even thought it seems it wants to, I've asked one of the authors for confirmation). Anyhow the engine is almost unmaintained at this stage so we may need to port to some other engine both for better code future proofing and to fix this problem. Fix for this has landed now https://invent.kde.org/kde/okular/merge_requests/106/ |