Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

openSUSE 12.2: 2013:0335-2 Critical: Acroread Remote Code Threat

opensuse
Calendar Grey February 28, 2013
Dist Opensuse Esm H88
The latest openSUSE Security Update for acroread addresses critical patches against severe remote code execution vulnerabilities, urging prompt installation for user protection.
An update that fixes two vulnerabilities is now available.

Description

acroread was updated to 9.5.4 to fix remote code execution

problems. (CVE-2013-0640, CVE-2013-0641)

More information can be found on:

Patch

Patch Instructions:

To install this openSUSE Security Update use YaST online_update.

Alternatively you can run the command listed for your product:

- openSUSE 12.2:NonFree:

zypper in -t patch openSUSE-2013-151

To bring your system up-to-date, use "zypper patch".

Package List

- openSUSE 12.2:NonFree (noarch):

acroread-cmaps-9.4.1-3.8.1

acroread-fonts-ja-9.4.1-3.8.1

acroread-fonts-ko-9.4.1-3.8.1

acroread-fonts-zh_CN-9.4.1-3.8.1

acroread-fonts-zh_TW-9.4.1-3.8.1

- openSUSE 12.2:NonFree (i586):

acroread-9.5.4-3.8.1

acroread-browser-plugin-9.5.4-3.8.1

References

https://www.suse.com/security/cve/CVE-2013-0640.html

https://www.suse.com/security/cve/CVE-2013-0641.html

--

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2013:0335-2
Rating: critical
Affected Products: openSUSE 12.2:NonFree

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here