Oval Definition:oval:com.redhat.rhsa:def:20071030
Revision Date:2007-11-07Version:633
Title:RHSA-2007:1030: xpdf security update (Important)
Description:Xpdf is an X Window System-based viewer for Portable Document Format (PDF) files.

  • Alin Rad Pop discovered several flaws in the handling of PDF files. An attacker could create a malicious PDF file that would cause Xpdf to crash, or potentially execute arbitrary code when opened. (CVE-2007-4352, CVE-2007-5392, CVE-2007-5393)

  • A flaw was found in the t1lib library, used in the handling of Type 1 fonts. An attacker could create a malicious file that would cause Xpdf to crash, or potentially execute arbitrary code when opened. (CVE-2007-4033)

    Users are advised to upgrade to these updated packages, which contain backported patches to resolve these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2007-4033
    CVE-2007-4352
    CVE-2007-5392
    CVE-2007-5393
    RHSA-2007:1030
    RHSA-2007:1030-01
    RHSA-2007:1030-01
    Platform(s):Red Hat Enterprise Linux 3
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND xpdf is earlier than 1:2.02-11.el3
  • AND xpdf is signed with Red Hat master key
  • BACK