Oval Definition:oval:com.redhat.rhsa:def:20070729
Revision Date:2007-07-30Version:635
Title:RHSA-2007:0729: kdegraphics security update (Important)
Description:The kdegraphics packages contain applications for the K Desktop Environment including kpdf, a PDF file viewer.

  • Maurycy Prodeus discovered an integer overflow flaw in the processing of PDF files. An attacker could create a malicious PDF file that would cause kpdf to crash or potentially execute arbitrary code when opened. (CVE-2007-3387)

    All users of kdegraphics should upgrade to these updated packages, which contain a backported patch to resolve this issue.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2007-3387
    RHSA-2007:0729
    RHSA-2007:0729-02
    RHSA-2007:0729-02
    Platform(s):Red Hat Enterprise Linux 4
    Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • kdegraphics is earlier than 7:3.3.1-4.RHEL4
  • AND kdegraphics is signed with Red Hat redhatrelease2 key
  • kdegraphics-devel is earlier than 7:3.3.1-4.RHEL4
  • AND kdegraphics-devel is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • kdegraphics is earlier than 7:3.5.4-2.el5
  • AND kdegraphics is signed with Red Hat redhatrelease2 key
  • kdegraphics-devel is earlier than 7:3.5.4-2.el5
  • AND kdegraphics-devel is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • kdegraphics is earlier than 7:3.3.1-4.RHEL4
  • AND kdegraphics is signed with Red Hat master key
  • kdegraphics-devel is earlier than 7:3.3.1-4.RHEL4
  • AND kdegraphics-devel is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • kdegraphics is earlier than 7:3.5.4-2.el5
  • AND kdegraphics is signed with Red Hat redhatrelease key
  • kdegraphics-devel is earlier than 7:3.5.4-2.el5
  • AND kdegraphics-devel is signed with Red Hat redhatrelease key
  • BACK