An updated xpdf package that fixes a buffer overflow security issue is now
available.
This update has been rated as having important security impact by the Red
Hat Security Response Team.
The xpdf package is an X Window System-based viewer for Portable Document
Format (PDF) files.
A heap based buffer overflow bug was discovered in Xpdf. An attacker could
construct a carefully crafted PDF file that could cause Xpdf to crash or
possibly execute arbitrary code when opened. The Common Vulnerabilities and
Exposures project assigned the name CVE-2006-0301 to this issue.
Users of Xpdf should upgrade to this updated package, which contains a
backported patch to resolve these issues.
Red Hat would like to thank Dirk Mueller for reporting this issue and
providing a patch.
| Red Hat Desktop (v. 4) |
|
| SRPMS: |
xpdf-3.00-11.12.src.rpm
File outdated by: RHSA-2009:1501 |
ecbd1704215b5886b323f3ed284eab56 |
| |
| IA-32: |
xpdf-3.00-11.12.i386.rpm
File outdated by: RHSA-2009:1501 |
df7bc17f97f222aa73ac258341a45acd |
| |
| x86_64: |
xpdf-3.00-11.12.x86_64.rpm
File outdated by: RHSA-2009:1501 |
f8464b02fa282be752281225f0d23cc4 |
| |
| Red Hat Enterprise Linux AS (v. 4) |
|
| SRPMS: |
xpdf-3.00-11.12.src.rpm
File outdated by: RHSA-2009:1501 |
ecbd1704215b5886b323f3ed284eab56 |
| |
| IA-32: |
xpdf-3.00-11.12.i386.rpm
File outdated by: RHSA-2009:1501 |
df7bc17f97f222aa73ac258341a45acd |
| |
| IA-64: |
xpdf-3.00-11.12.ia64.rpm
File outdated by: RHSA-2009:1501 |
6ee29be68882992838fba3bcc29a9307 |
| |
| PPC: |
xpdf-3.00-11.12.ppc.rpm
File outdated by: RHSA-2009:1501 |
d2293530e86e08eccd70fbae4593b8ef |
| |
| s390: |
xpdf-3.00-11.12.s390.rpm
File outdated by: RHSA-2009:1501 |
e7fb6a40049da54253a9291701433539 |
| |
| s390x: |
xpdf-3.00-11.12.s390x.rpm
File outdated by: RHSA-2009:1501 |
8b410ea2468533f79c897d80c7fd279d |
| |
| x86_64: |
xpdf-3.00-11.12.x86_64.rpm
File outdated by: RHSA-2009:1501 |
f8464b02fa282be752281225f0d23cc4 |
| |
| Red Hat Enterprise Linux ES (v. 4) |
|
| SRPMS: |
xpdf-3.00-11.12.src.rpm
File outdated by: RHSA-2009:1501 |
ecbd1704215b5886b323f3ed284eab56 |
| |
| IA-32: |
xpdf-3.00-11.12.i386.rpm
File outdated by: RHSA-2009:1501 |
df7bc17f97f222aa73ac258341a45acd |
| |
| IA-64: |
xpdf-3.00-11.12.ia64.rpm
File outdated by: RHSA-2009:1501 |
6ee29be68882992838fba3bcc29a9307 |
| |
| x86_64: |
xpdf-3.00-11.12.x86_64.rpm
File outdated by: RHSA-2009:1501 |
f8464b02fa282be752281225f0d23cc4 |
| |
| Red Hat Enterprise Linux WS (v. 4) |
|
| SRPMS: |
xpdf-3.00-11.12.src.rpm
File outdated by: RHSA-2009:1501 |
ecbd1704215b5886b323f3ed284eab56 |
| |
| IA-32: |
xpdf-3.00-11.12.i386.rpm
File outdated by: RHSA-2009:1501 |
df7bc17f97f222aa73ac258341a45acd |
| |
| IA-64: |
xpdf-3.00-11.12.ia64.rpm
File outdated by: RHSA-2009:1501 |
6ee29be68882992838fba3bcc29a9307 |
| |
| x86_64: |
xpdf-3.00-11.12.x86_64.rpm
File outdated by: RHSA-2009:1501 |
f8464b02fa282be752281225f0d23cc4 |
| |
(The unlinked packages above are only available from the Red Hat Network)
|
179046 - CVE-2006-0301 PDF splash handling heap overflow