Oval Definition:oval:com.redhat.rhsa:def:20050670
Revision Date:2005-08-09Version:502
Title:RHSA-2005:670: xpdf security update (Moderate)
Description:The xpdf package is an X Window System-based viewer for Portable Document Format (PDF) files.

A flaw was discovered in Xpdf in that an attacker could construct a carefully crafted PDF file that would cause Xpdf to consume all available disk space in /tmp when opened. The Common Vulnerabilities and Exposures project assigned the name CAN-2005-2097 to this issue.

Note this issue does not affect the version of Xpdf in Red Hat Enterprise Linux 3 or 2.1.

Users of xpdf should upgrade to this updated package, which contains a backported patch to resolve this issue.
Family:unixClass:patch
Status:Reference(s):CVE-2005-2097
RHSA-2005:670-01
Platform(s):Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 4 is installed
  • AND xpdf is earlier than 1:3.00-11.8
  • AND xpdf is signed with Red Hat master key
  • BACK