Bug 434212 - SECURITY: shadow attacks and compromised digital integrity of PDFs
Summary: SECURITY: shadow attacks and compromised digital integrity of PDFs
Status: RESOLVED FIXED
Alias: None
Product: okular
Classification: Applications
Component: PDF backend (show other bugs)
Version: 20.12.3
Platform: Other Linux
: NOR grave
Target Milestone: ---
Assignee: Okular developers
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2021-03-09 23:48 UTC by Daniel Duris
Modified: 2021-03-10 00:07 UTC (History)
2 users (show)

See Also:
Latest Commit:
Version Fixed In:
Sentry Crash Report:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Daniel Duris 2021-03-09 23:48:06 UTC
SUMMARY
See vulnerabilities listed for Okular: https://thehackernews.com/2021/02/shadow-attacks-let-attackers-replace.html
Comment 1 Albert Astals Cid 2021-03-10 00:07:04 UTC
This is really old, we have fixed them all as far as I understand.

Please use security@kde.org to report security issues in the future.