USN-4830-1: Okular vulnerability
15 March 2021
Okular could be made to overwrite files.
Releases
Packages
- okular - universal document viewer
Details
It was discovered that Okular mishandled certain crafted archives during
extraction. An attacker could use this vulnerability to write arbitrary
files to the filesystem.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 18.04
-
libokular5core8
-
4:17.12.3-0ubuntu1+esm1
Available with Ubuntu Pro
-
okular
-
4:17.12.3-0ubuntu1+esm1
Available with Ubuntu Pro
-
qml-module-org-kde-okular
-
4:17.12.3-0ubuntu1+esm1
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.