Gentoo Linux Security Advisory GLSA 200904-07
https://security.gentoo.org/
Severity: Normal
Title: Xpdf: Untrusted search path
Date: April 07, 2009
Bugs: #242930
ID: 200904-07
Synopsis
=======
A vulnerability in Xpdf might allow local attackers to execute
arbitrary code.
Background
=========
Xpdf is a PDF file viewer that runs under the X Window System.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 app-text/xpdf < 3.02-r2 >= 3.02-r2
==========
Erik Wallin reported that Gentoo's Xpdf attempts to read the "xpdfrc"
file from the current working directory if it cannot find a ".xpdfrc"
file in the user's home directory. This is caused by a missing
definitio...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.