A publicly disclosed flaw, CVE-2026-46529, allows single-click remote code execution in Evince-derived document viewers including Atril and Xreader by abusing PDF /GoToR actions. The bug stems from attacker-controlled PDF destination and search fields being interpolated into ev_spawn() and later reparsed by g_app_info_create_from_commandline, letting a malicious document inject a standalone --gtk-module argument. GTK then loads an attacker-controlled shared library, executing its constructor as the local user who opened the file.
Advisories and mailing-list disclosures said the attack can be delivered as a single polyglot file that is both a valid PDF and a valid ELF shared object, making exploitation possible on stock Linux desktop installations without special configuration. Researchers reported proof-of-concept exploitation on Atril, including reverse-shell execution, and noted the issue is a variant of the defect class previously seen in CVE-2023-51698. Maintainers coordinated fixes across Evince, Atril, and Papers, while noting that GTK4-based viewers such as Papers are not vulnerable to the exact --gtk-module loading path because GTK 4 removed that flag, though related command-injection concerns may still remain.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
Follow-up discussion on the Atril advisory said the original exploit's need to predict the absolute save path of the malicious PDF could be removed. This clarified that the attack could be made more practical than initially described.
An oss-sec discussion reported that Fedora updated Atril to version 1.18.5 to remediate CVE-2026-46529. This reflects downstream distribution action following the coordinated disclosure.
Public advisories described how a malicious PDF `/GoToR` action can inject a `--gtk-module` argument and cause GTK to load an attacker-controlled shared library, enabling code execution as the local user. The disclosure included a proof of concept using a PDF/ELF polyglot file accepted both as a PDF and as a shared library.
Fixes for the vulnerability were merged in Evince, Atril, Papers, and related GLib documentation updates as part of the coordinated response. Maintainers noted that GTK4-based viewers are not vulnerable to the exact `--gtk-module` remote-code-execution path.
Maintainers coordinated disclosure of a command-injection flaw in Evince-derived document viewers and assigned CVE-2026-46529 as a shared identifier across affected forks including Evince, Atril, and Xreader. The bug allows attacker-controlled PDF fields to inject command-line arguments during process spawning.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
securityonline.info
Open sourcegithub.com
Open sourceseclists.org
Open sourcegitlab.gnome.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.