Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Scientific Linux 7: SLSA-2016:2580-2 Moderate: Poppler Buffer Overflow

Scientific Large Esm H500
Moderate: poppler security and bug fix update
Date: Wed, 14 Dec 2016 18:14:25 -0000
Reply-To: scientific-linux-users@
Sender: Security Errata for Scientific Linux
 
From: Scott Reid 
Subject: Security ERRATA Moderate: poppler on SL7.x x86_64
MIME-Version: 1.0
Message-ID: <20161214181425.15405.99447@slpackages.fnal.gov>

Synopsis: Moderate: poppler security and bug fix update
Advisory ID: SLSA-2016:2580-2
Issue Date: 2016-11-03
CVE Numbers: CVE-2015-8868
--

Security Fix(es):

* A heap-buffer overflow was found in the poppler library. An attacker
could create a malicious PDF file that would cause applications that use
poppler (such as Evince) to crash or, potentially, execute arbitrary code
when opened. (CVE-2015-8868)

Additional Changes:
--

SL7
 x86_64
 poppler-0.26.5-16.el7.i686.rpm
 poppler-0.26.5-16.el7.x86_64.rpm
 poppler-debuginfo-0.26.5-16.el7.i686.rpm
 poppler-debuginfo-0.26.5-16.el7.x86_64.rpm
 poppler-glib-0.26.5-16.el7.i686.rpm
 poppler-glib-0.26.5-16.el7.x86_64.rpm
 poppler-qt-0.26.5-16.el7.i686.rpm
 poppler-qt-0.26.5-16.el7.x86_64.rpm
 poppler-utils-0.26.5-16.el7.x86_64.rpm
 poppler-cpp-0.26.5-16.el7.i686.rpm
 poppler-cpp-0.26.5-16.el7.x86_64.rpm
 poppler-cpp-devel-0.26.5-16.el7.i686.rpm
 poppler-cpp-devel-0.26.5-16.el7.x86_64.rpm
 poppler-demos-0.26.5-16.el7.x86_64.rpm
 poppler-devel-0.26.5-16.el7.i686.rpm
 poppler-devel-0.26.5-16.el7.x86_64.rpm
 poppler-glib-devel-0.26.5-16.el7.i686.rpm
 poppler-glib-devel-0.26.5-16.el7.x86_64.rpm
 poppler-qt-devel-0.26.5-16.el7.i686.rpm
 poppler-qt-devel-0.26.5-16.el7.x86_64.rpm

- Scientific Linux Development Team

Related News

Your message here