Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Debian: DSA 619-1 Urgent: xpdf Vulnerability Allows Remote Code Execution

debian
Calendar Grey December 30, 2004
Debian Logo
Ubuntu Security Notice highlights a severe memory corruption flaw in evince, recommending urgent patches to address the vulnerability.
An iDEFENSE security researcher discovered a buffer overflow in xpdf, the portable document format (PDF) suite

Summary


For the unstable distribution (sid) this problem has been fixed in
version 3.00-11.

We recommend that you upgrade your xdpf package immediately.


Upgrade Instructions
--------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.0 alias woody
-------------------------------- Source archives:

Size/MD5 checksum: 706 23700a27ce16f5eb689c506202d2765b
Size/MD5 checksum: 10380 e2848faffb3f2e31dd5537455e7080da
Size/MD5 checksum: 397750 81f3c381cef729e4b6f4ce21cf5bbf3c

Architecture independent components:

Size/MD5 checksum: 38564 3569649f5201386...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

--------------------------------------------------------------------------Package: xpdf
CVE ID: CAN-2004-1125

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here