Total vulnerabilities in the database
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an XML external entity (XXE) injection attack.
Software | From | Fixed in |
---|---|---|
inkscape / inkscape | - | 0.48.4 |
fedoraproject / fedora | 17 | 17.x |
fedoraproject / fedora | 16 | 16.x |
fedoraproject / fedora | 18 | 18.x |
canonical / ubuntu_linux | 11.10 | 11.10.x |
canonical / ubuntu_linux | 12.10 | 12.10.x |
canonical / ubuntu_linux | 10.04 | 10.04.x |
canonical / ubuntu_linux | 12.04 | 12.04.x |
opensuse / opensuse | 11.4 | 11.4.x |
opensuse / opensuse | 12.2 | 12.2.x |
opensuse / opensuse | 12.1 | 12.1.x |