The xpdf package is an X Window System-based viewer for Portable Document Format (PDF) files.
A heap based buffer overflow bug was discovered in Xpdf. An attacker could construct a carefully crafted PDF file that could cause Xpdf to crash or possibly execute arbitrary code when opened. The Common Vulnerabilities and Exposures project assigned the name CVE-2006-0301 to this issue.
Users of Xpdf should upgrade to this updated package, which contains a backported patch to resolve these issues.
Red Hat would like to thank Dirk Mueller for reporting this issue and providing a patch.