Commit Graph

5 Commits

Author SHA1 Message Date
RHEL Packaging Agent
22fac4d714 Fix CVE-2026-46529: command injection via crafted document links
Backport upstream commit 970c219e from evince to fix
CVE-2026-46529. The patch quotes string arguments (page
labels, named destinations, and search strings) passed to
ev_spawn when spawning a new Evince instance, preventing
untrusted values from being interpreted as unintended flags.

CVE: CVE-2026-46529
Upstream patches:
 - 970c219e86.patch
Resolves: RHEL-184039

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-06-16 12:28:40 +00:00
Troy Dawson
507df03fc6 Bring gating.yaml over from Brew dist-git
Signed-off-by: Troy Dawson <tdawson@redhat.com>
2023-03-10 10:35:59 -08:00
James Antill
7321f5d6c7 Import rpm: c8s 2023-02-27 12:55:29 -05:00
James Antill
543ae23983 Auto sync2gitlab import of evince-3.28.4-16.el8.src.rpm 2022-05-26 06:48:36 -04:00
James Antill
754f2b182a Initial c8s branch. 2022-05-26 06:48:31 -04:00