Oval Definition:oval:com.redhat.rhsa:def:20050840
Revision Date:2005-12-20Version:503
Title:RHSA-2005:840: xpdf security update (Important)
Description:The xpdf package is an X Window System-based viewer for Portable Document Format (PDF) files.

Several flaws were discovered in Xpdf. An attacker could construct a carefully crafted PDF file that could cause Xpdf to crash or possibly execute arbitrary code when opened. The Common Vulnerabilities and Exposures project assigned the names CVE-2005-3191, CVE-2005-3192, and CVE-2005-3193 to these issues.

Users of Xpdf should upgrade to this updated package, which contains a backported patch to resolve these issues.

Red Hat would like to thank Derek B. Noonburg for reporting this issue and providing a patch.
Family:unixClass:patch
Status:Reference(s):CVE-2005-3191
CVE-2005-3192
CVE-2005-3193
CVE-2005-3624
CVE-2005-3625
CVE-2005-3626
CVE-2005-3627
CVE-2005-3628
RHSA-2005:840-02
Platform(s):Red Hat Enterprise Linux 3
Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 3 is installed
  • AND xpdf is earlier than 1:2.02-9.8
  • AND xpdf is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND xpdf is earlier than 1:3.00-11.10
  • AND xpdf is signed with Red Hat master key
  • BACK