Описание
ELSA-2007-0731: Important: tetex security update (IMPORTANT)
[2.0.2-22.0.1.EL4.8]
- backport upstream fix for xpdf integer overflow CVE-2007-3387 (#248207) Resolves: #248207
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
tetex
3.0-33.1.el5
tetex-afm
3.0-33.1.el5
tetex-doc
3.0-33.1.el5
tetex-dvips
3.0-33.1.el5
tetex-fonts
3.0-33.1.el5
tetex-latex
3.0-33.1.el5
tetex-xdvi
3.0-33.1.el5
Oracle Linux i386
tetex
3.0-33.1.el5
tetex-afm
3.0-33.1.el5
tetex-doc
3.0-33.1.el5
tetex-dvips
3.0-33.1.el5
tetex-fonts
3.0-33.1.el5
tetex-latex
3.0-33.1.el5
tetex-xdvi
3.0-33.1.el5
Связанные CVE
Связанные уязвимости
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.
Integer overflow in the StreamPredictor::StreamPredictor function in x ...
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.