Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 11: 2009-10648 Moderate: xpdf Integer Overflow Fixes

fedora
Calendar Grey October 20, 2009
Dist Fedora Esm H88
Patch XPDF for Fedora 11 addresses several integer overflow vulnerabilities, improving both security and stability.
- apply xpdf-3.02pl4 security patch to fix: CVE-2009-1188/CVE-2009-3603, CVE-2009-3604, CVE-2009-3606, CVE-2009-3608, CVE-2009-3609

Summary

Xpdf is an X Window System based viewer for Portable Document Format

(PDF) files. Xpdf is a small and efficient program which uses

standard X fonts.

Update Information:

- apply xpdf-3.02pl4 security patch to fix: CVE-2009-1188/CVE-2009-3603, CVE-2009-3604, CVE-2009-3606, CVE-2009-3608, CVE-2009-3609

Change Log

* Fri Oct 16 2009 Tom "spot" Callaway - 1:3.02-15 - apply xpdf-3.02pl4 security patch to fix: CVE-2009-3603, CVE-2009-3604, CVE-2009-3605, CVE-2009-3606 CVE-2009-3608, CVE-2009-3609 * Mon Jul 27 2009 Fedora Release Engineering - 1:3.02-14 - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild

References


[ 1 ] Bug #495907 - CVE-2009-1188 xpdf/poppler: SplashBitmap integer overflow https://bugzilla.redhat.com/show_bug.cgi?id=495907 [ 2 ] Bug #526911 - CVE-2009-3604 xpdf/poppler: Splash::drawImage integer overflow and missing allocation return value check https://bugzilla.redhat.com/show_bug.cgi?id=526911 [ 3 ] Bug #526877 - CVE-2009-3606 xpdf/poppler: PSOutputDev::doImageL1Sep integer overflow https://bugzilla.redhat.com/show_bug.cgi?id=526877 [ 4 ] Bug #526637 - CVE-2009-3608 xpdf/poppler: integer overflow in ObjectStream::ObjectStream (oCERT-2009-016) https://bugzilla.redhat.com/show_bug.cgi?id=526637 [ 5 ] Bug #526893 - CVE-2009-3609 xpdf/poppler: ImageStream::ImageStream integer overflow https://bugzilla.redhat.com/show_bug.cgi?id=526893

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update xpdf' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: xpdf
Product: Fedora 11
Version: 3.02
Release: 15.fc11
Summary: A PDF file viewer for the X Window System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here