Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 3 articles for you...
200

Scientific Linux 5.x: 276468 Moderate: Tetex Buffer Overflow Issues

Moderate: tetex security update. Date: Fri, 7 May 2010 15:42:08 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: tetex on SL5.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Moderate: tetex security update Issue date: 2010-05-06 CVE Names: CVE-2009-0146 CVE-2009-0147 CVE-2009-0166 CVE-2009-0195 CVE-2009-0791 CVE-2009-0799 CVE-2009-0800 CVE-2009-1179 CVE-2009-1180 CVE-2009-1181 CVE-2009-1182 CVE-2009-1183 CVE-2009-3608 CVE-2009-3609 CVE-2010-0739 CVE-2010-0829 CVE-2010-1440 Multiple integer overflow flaws were found in the way teTeX processed special commands when converting DVI files into PostScript. An attacker could create a malicious DVI file that would cause the dvips executable to crash or, potentially, execute arbitrary code. (CVE-2010-0739, CVE-2010-1440) Multiple array index errors were found in the way teTeX converted DVI files into the Portable Network Graphics (PNG) format. An attacker could create a malicious DVI file that would cause the dvipng executable to crash. (CVE-2010-0829) teTeX embeds a copy of Xpdf, an open source Portable Document Format (PDF) file viewer, to allow adding images in PDF format to the generated PDF documents. The following issues affect Xpdf code: Multiple integer overflow flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0147, CVE-2009-1179) Multiple integer overflow flaws were found in Xpdf. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0791, CVE-2009-3608, CVE-2009-3609) - Hide quoted text - A heap-based buffer overflow flaw was found in Xpdf's JBIG2decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0195) Multiple buffer overflow flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0146, CVE-2009-1182) Multiple flaws were found in Xpdf's JBIG2 decoder that could lead to the freeing of arbitrary memory. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0166, CVE-2009-1180) Multiple input validation flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0800) Multiple denial of service flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash. (CVE-2009-0799, CVE-2009-1181, CVE-2009-1183) SL 5.x SRPMS: tetex-3.0-33.8.el5_5.5.src.rpm i386: tetex-3.0-33.8.el5_5.5.i386.rpm tetex-afm-3.0-33.8.el5_5.5.i386.rpm tetex-doc-3.0-33.8.el5_5.5.i386.rpm tetex-dvips-3.0-33.8.el5_5.5.i386.rpm tetex-fonts-3.0-33.8.el5_5.5.i386.rpm tetex-latex-3.0-33.8.el5_5.5.i386.rpm tetex-xdvi-3.0-33.8.el5_5.5.i386.rpm x86_64: tetex-3.0-33.8.el5_5.5.x86_64.rpm tetex-afm-3.0-33.8.el5_5.5.x86_64.rpm tetex-doc-3.0-33.8.el5_5.5.x86_64.rpm tetex-dvips-3.0-33.8.el5_5.5.x86_64.rpm tetex-fonts-3.0-33.8.el5_5.5.x86_64.rpm tetex-latex-3.0-33.8.el5_5.5.x86_64.rpm tetex-xdvi-3.0-33.8.el5_5.5.x86_64.rpm -Connie Sieh -Troy Dawson . Important security enhancements for Scientific Linux address several vulnerabilities. Act promptly to safeguard your system's stability and security.. Scientific Linux Tetex Update, Security Fix, System Integrity, Buffer Overflow Mitigation. . LinuxSecurity.com Team

Calendar 2 May 07, 2010 Scientific Linux
200

Scientific Linux SL4.x: Moderate Advisory for tetex Buffer Overflows

Moderate: tetex security update. Date: Fri, 7 May 2010 13:48:16 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: tetex on SL4.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Moderate: tetex security update Issue date: 2010-05-06 CVE Names: CVE-2007-5935 CVE-2009-0146 CVE-2009-0147 CVE-2009-0166 CVE-2009-0195 CVE-2009-0791 CVE-2009-0799 CVE-2009-0800 CVE-2009-1179 CVE-2009-1180 CVE-2009-1181 CVE-2009-1182 CVE-2009-1183 CVE-2009-3609 CVE-2010-0739 CVE-2010-0827 CVE-2010-1440 A buffer overflow flaw was found in the way teTeX processed virtual font files when converting DVI files into PostScript. An attacker could create a malicious DVI file that would cause the dvips executable to crash or, potentially, execute arbitrary code. (CVE-2010-0827) Multiple integer overflow flaws were found in the way teTeX processed special commands when converting DVI files into PostScript. An attacker could create a malicious DVI file that would cause the dvips executable to crash or, potentially, execute arbitrary code. (CVE-2010-0739, CVE-2010-1440) A stack-based buffer overflow flaw was found in the way teTeX processed DVI files containing HyperTeX references with long titles, when converting them into PostScript. An attacker could create a malicious DVI file that would cause the dvips executable to crash. (CVE-2007-5935) teTeX embeds a copy of Xpdf, an open source Portable Document Format (PDF) file viewer, to allow adding images in PDF format to the generated PDF documents. The following issues affect Xpdf code: Multiple integer overflow flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0147, CVE-2009-1179) Multiple integer overflow flaws were found in Xpdf. If a local user generated a PDFfile from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0791, CVE-2009-3609) A heap-based buffer overflow flaw was found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0195) Multiple buffer overflow flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0146, CVE-2009-1182) Multiple flaws were found in Xpdf's JBIG2 decoder that could lead to the freeing of arbitrary memory. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0166, CVE-2009-1180) Multiple input validation flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary code with the privileges of the user running pdflatex. (CVE-2009-0800) Multiple denial of service flaws were found in Xpdf's JBIG2 decoder. If a local user generated a PDF file from a TeX document, referencing a specially-crafted PDF file, it would cause Xpdf to crash. (CVE-2009-0799, CVE-2009-1181, CVE-2009-1183) SL 4.x SRPMS: tetex-2.0.2-22.0.1.EL4.16.src.rpm i386: tetex-2.0.2-22.0.1.EL4.16.i386.rpm tetex-afm-2.0.2-22.0.1.EL4.16.i386.rpm tetex-doc-2.0.2-22.0.1.EL4.16.i386.rpm tetex-dvips-2.0.2-22.0.1.EL4.16.i386.rpm tetex-fonts-2.0.2-22.0.1.EL4.16.i386.rpm tetex-latex-2.0.2-22.0.1.EL4.16.i386.rpm tetex-xdvi-2.0.2-22.0.1.EL4.16.i386.rpm x86_64: tetex-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-afm-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-doc-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-dvips-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-fonts-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-latex-2.0.2-22.0.1.EL4.16.x86_64.rpm tetex-xdvi-2.0.2-22.0.1.EL4.16.x86_64.rpm -Connie Sieh -Troy Dawson . Significant security patch for teTeX in Scientific Linux SL4.x tackling various buffer overflow vulnerabilities and integer-related defects.. teTeX Update, Scientific Linux Security, Moderate Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 07, 2010 Important Scientific Linux
200

Scientific Linux Security Update: tetex for SL5, SL4, SL3 - Urgent Issue

Important: tetex security update. Date: Tue, 13 Nov 2007 17:03:33 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for tetex on SL5.x, SL4.x, SL3,x i386/x86_64 Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. Synopsis: Important: tetex security update Issue date: 2007-11-08 CVE Names: CVE-2007-4033 CVE-2007-4352 CVE-2007-5392 CVE-2007-5393 Alin Rad Pop discovered several flaws in the handling of PDF files. An attacker could create a malicious PDF file that would cause TeTeX to crash or potentially execute arbitrary code when opened. (CVE-2007-4352, CVE-2007-5392, CVE-2007-5393) A flaw was found in the t1lib library, used in the handling of Type 1 fonts. An attacker could create a malicious file that would cause TeTeX to crash, or potentially execute arbitrary code when opened. (CVE-2007-4033) SL 3.0.x SRPMS: tetex-1.0.7-67.11.src.rpm i386: tetex-1.0.7-67.11.i386.rpm tetex-afm-1.0.7-67.11.i386.rpm tetex-doc-1.0.7-67.11.i386.rpm tetex-dvips-1.0.7-67.11.i386.rpm tetex-fonts-1.0.7-67.11.i386.rpm tetex-latex-1.0.7-67.11.i386.rpm tetex-xdvi-1.0.7-67.11.i386.rpm x86_64: tetex-1.0.7-67.11.x86_64.rpm tetex-afm-1.0.7-67.11.x86_64.rpm tetex-doc-1.0.7-67.11.x86_64.rpm tetex-dvips-1.0.7-67.11.x86_64.rpm tetex-fonts-1.0.7-67.11.x86_64.rpm tetex-latex-1.0.7-67.11.x86_64.rpm tetex-xdvi-1.0.7-67.11.x86_64.rpm SL 4.x SRPMS: tetex-2.0.2-22.0.1.EL4.10.src.rpm i386: tetex-2.0.2-22.0.1.EL4.10.i386.rpm tetex-afm-2.0.2-22.0.1.EL4.10.i386.rpm tetex-doc-2.0.2-22.0.1.EL4.10.i386.rpm tetex-dvips-2.0.2-22.0.1.EL4.10.i386.rpm tetex-fonts-2.0.2-22.0.1.EL4.10.i386.rpm tetex-latex-2.0.2-22.0.1.EL4.10.i386.rpm tetex-xdvi-2.0.2-22.0.1.EL4.10.i386.rpm x86_64: tetex-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-afm-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-doc-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-dvips-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-fonts-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-latex-2.0.2-22.0.1.EL4.10.x86_64.rpm tetex-xdvi-2.0.2-22.0.1.EL4.10.x86_64.rpm SL 5.x SRPMS: tetex-3.0-33.2.el5.2.src.rpm i386: tetex-3.0-33.2.el5.2.i386.rpm tetex-afm-3.0-33.2.el5.2.i386.rpm tetex-doc-3.0-33.2.el5.2.i386.rpm tetex-dvips-3.0-33.2.el5.2.i386.rpm tetex-fonts-3.0-33.2.el5.2.i386.rpm tetex-latex-3.0-33.2.el5.2.i386.rpm tetex-xdvi-3.0-33.2.el5.2.i386.rpm x86_64: tetex-3.0-33.2.el5.2.x86_64.rpm tetex-afm-3.0-33.2.el5.2.x86_64.rpm tetex-doc-3.0-33.2.el5.2.x86_64.rpm tetex-dvips-3.0-33.2.el5.2.x86_64.rpm tetex-fonts-3.0-33.2.el5.2.x86_64.rpm tetex-latex-3.0-33.2.el5.2.x86_64.rpm tetex-xdvi-3.0-33.2.el5.2.x86_64.rpm -Connie Sieh -Troy Dawson . Important tetex patch addresses critical vulnerabilities in Scientific Linux affecting PDF management and execution of code.. tetex security update, Scientific Linux vulnerabilities, PDF handling flaws, code execution risk. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 13, 2007 Important Scientific Linux
200

Scientific Linux: tetex Security Update for Multiple Versions and DoS Risk

Important: tetex security update. Date: Wed, 1 Aug 2007 15:55:16 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for tetex on SL5.x, SL4.x, SL3,x i386/x86_64 Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. Synopsis: Important: tetex security update Issue date: 2007-08-01 CVE Names: CVE-2007-3387 Maurycy Prodeus discovered an integer overflow flaw in the processing of PDF files. An attacker could create a malicious PDF file that would cause TeTeX to crash or potentially execute arbitrary code when opened. (CVE-2007-3387) SL 3.0.x SRPMS: tetex-1.0.7-67.10.src.rpm i386: tetex-1.0.7-67.10.i386.rpm tetex-afm-1.0.7-67.10.i386.rpm tetex-doc-1.0.7-67.10.i386.rpm tetex-dvips-1.0.7-67.10.i386.rpm tetex-fonts-1.0.7-67.10.i386.rpm tetex-latex-1.0.7-67.10.i386.rpm tetex-xdvi-1.0.7-67.10.i386.rpm x86_64: tetex-1.0.7-67.10.x86_64.rpm tetex-afm-1.0.7-67.10.x86_64.rpm tetex-doc-1.0.7-67.10.x86_64.rpm tetex-dvips-1.0.7-67.10.x86_64.rpm tetex-fonts-1.0.7-67.10.x86_64.rpm tetex-latex-1.0.7-67.10.x86_64.rpm tetex-xdvi-1.0.7-67.10.x86_64.rpm SL 4.x SRPMS: tetex-2.0.2-22.0.1.EL4.8.src.rpm i386: tetex-2.0.2-22.0.1.EL4.8.i386.rpm tetex-afm-2.0.2-22.0.1.EL4.8.i386.rpm tetex-doc-2.0.2-22.0.1.EL4.8.i386.rpm tetex-dvips-2.0.2-22.0.1.EL4.8.i386.rpm tetex-fonts-2.0.2-22.0.1.EL4.8.i386.rpm tetex-latex-2.0.2-22.0.1.EL4.8.i386.rpm tetex-xdvi-2.0.2-22.0.1.EL4.8.i386.rpm x86_64: tetex-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-afm-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-doc-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-dvips-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-fonts-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-latex-2.0.2-22.0.1.EL4.8.x86_64.rpm tetex-xdvi-2.0.2-22.0.1.EL4.8.x86_64.rpm SL 5.x SRPMS: tetex-3.0-33.1.el5.src.rpm i386: tetex-3.0-33.1.el5.i386.rpm tetex-afm-3.0-33.1.el5.i386.rpm tetex-doc-3.0-33.1.el5.i386.rpm tetex-dvips-3.0-33.1.el5.i386.rpm tetex-fonts-3.0-33.1.el5.i386.rpm tetex-latex-3.0-33.1.el5.i386.rpm tetex-xdvi-3.0-33.1.el5.i386.rpm x86_64: tetex-3.0-33.1.el5.x86_64.rpm tetex-afm-3.0-33.1.el5.x86_64.rpm tetex-doc-3.0-33.1.el5.x86_64.rpm tetex-dvips-3.0-33.1.el5.x86_64.rpm tetex-fonts-3.0-33.1.el5.x86_64.rpm tetex-latex-3.0-33.1.el5.x86_64.rpm tetex-xdvi-3.0-33.1.el5.x86_64.rpm -Connie Sieh -Troy Dawson . Stay informed about the essential tetex security patch that tackles an integer overflow issue and the associated risks it poses.. Scientific Linux tetex update, tetex security fixes, integer overflow vulnerabilities. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 01, 2007 Important Scientific Linux
200

Scientific Linux: Tetex Moderate Update Resolves Integer Overflows

Updated tetex packages that fix several integer overflows are . Date: Tue, 24 Jan 2006 11:06:54 -0600 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: ERRATA for "tetex" on SL 40,41,42 i386,x86_64,ia64 now available Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. The following ERRATA for SL 40,41,42 i386,x86_64,ia64 are now available from: Synopsis: Updated tetex packages that fix several integer overflows are now available Severity: moderate Issued on: 2006-01-19 CVEs: CVE-2005-3624 CVE-2005-3625 CVE-2005-3626 CVE-2005-3627 CVE-2005-3628 CVE-2005-3192 CVE-2005-3193 CVE-2005-3191 SRPMS tetex-2.0.2-22.EL4.7.src.rpm i386 tetex-2.0.2-22.EL4.7.i386.rpm tetex-afm-2.0.2-22.EL4.7.i386.rpm tetex-doc-2.0.2-22.EL4.7.i386.rpm tetex-dvips-2.0.2-22.EL4.7.i386.rpm tetex-fonts-2.0.2-22.EL4.7.i386.rpm tetex-latex-2.0.2-22.EL4.7.i386.rpm tetex-xdvi-2.0.2-22.EL4.7.i386.rpm ia-64 tetex-2.0.2-22.EL4.7.ia64.rpm tetex-afm-2.0.2-22.EL4.7.ia64.rpm tetex-doc-2.0.2-22.EL4.7.ia64.rpm tetex-dvips-2.0.2-22.EL4.7.ia64.rpm tetex-fonts-2.0.2-22.EL4.7.ia64.rpm tetex-latex-2.0.2-22.EL4.7.ia64.rpm tetex-xdvi-2.0.2-22.EL4.7.ia64.rpm x86_64 tetex-2.0.2-22.EL4.7.x86_64.rpm tetex-afm-2.0.2-22.EL4.7.x86_64.rpm tetex-doc-2.0.2-22.EL4.7.x86_64.rpm tetex-dvips-2.0.2-22.EL4.7.x86_64.rpm tetex-fonts-2.0.2-22.EL4.7.x86_64.rpm tetex-latex-2.0.2-22.EL4.7.x86_64.rpm tetex-xdvi-2.0.2-22.EL4.7.x86_64.rpm -Connie Sieh -Jarek Polok . Recent updates to the tetex packages on Scientific Linux address several integer overflow vulnerabilities classified as moderate in severity.. tetex package updates, Scientific Linux security, fix integer overflows. . LinuxSecurity.com Team

Calendar 2 Jan 24, 2006 Scientific Linux
98

Red Hat Enterprise Linux 4 RHSA-2005:026-01 Moderate: Tetex Buffer Overflow

Updated tetex packages that resolve security issues are now available for Red Hat Enterprise Linux 4. This update has been rated as having moderate security impact by the Red Hat Security Response Team.. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Moderate: tetex security update Advisory ID: RHSA-2005:026-01 Advisory URL: https://access.redhat.com/errata/RHSA-2005:026.html Issue date: 2005-03-16 Updated on: 2005-03-16 Product: Red Hat Enterprise Linux CVE Names: CAN-2005-0064 CAN-2004-1125 - ---------------------------------------------------------------------1. Summary: Updated tetex packages that resolve security issues are now available for Red Hat Enterprise Linux 4. This update has been rated as having moderate security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Problem description: The tetex packages (teTeX) contain an implementation of TeX for Linux or UNIX systems. A buffer overflow flaw was found in the Gfx::doImage function of Xpdf which also affects teTeX due to a shared codebase. An attacker could construct a carefully crafted PDF file that could cause teTeX to crash or possibly execute arbitrary code when opened. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-1125 to this issue. A buffer overflow flaw was found in the Decrypt::makeFileKey2 function of Xpdf which also affects teTeX due to a shared codebase. An attacker could construct a carefully crafted PDF file that could cause teTeX to crash or possibly execute arbitrary code when opened. The Common Vulnerabilitiesand Exposures project (cve.mitre.org) has assigned the name CAN-2005-0064 to this issue. Users should update to these erratum packages which contain backported patches to correct these issues. 4. Solution: Before applying this update, make sure that all previously-released errata relevant to your system have been applied. Use Red Hat Network to download and update your packages. To launch the Red Hat Update Agent, use the following command: up2date For information on how to install packages manually, refer to the following Web page for the System Administration or Customization guide specific to your system: https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/ 5. Bug IDs fixed (https://bugzilla.redhat.com/): 144257 - CAN-2004-1125 xpdf buffer overflow 145055 - CAN-2005-0064 xpdf buffer overflow 6. RPMs required: Red Hat Enterprise Linux AS version 4: SRPMS: 0e9f7658ff7f20c50a411b66359043d4 tetex-2.0.2-22.EL4.4.src.rpm i386: 4a864c86edbd510bf92e60d921044663 tetex-2.0.2-22.EL4.4.i386.rpm 2001bd44e3c46e850071ffb096039201 tetex-afm-2.0.2-22.EL4.4.i386.rpm 596e753eb5f3e6d0ff7473f8ae462134 tetex-doc-2.0.2-22.EL4.4.i386.rpm 023f7113ebc22db5b6b86b11153ae079 tetex-dvips-2.0.2-22.EL4.4.i386.rpm 3490e58a864bec84d1a7c5479335f7a8 tetex-fonts-2.0.2-22.EL4.4.i386.rpm 5378603b54e287c472fb258384186ca4 tetex-latex-2.0.2-22.EL4.4.i386.rpm 36a8f5600bc353c4c2f14fa5f6fda26e tetex-xdvi-2.0.2-22.EL4.4.i386.rpm ia64: 67604c19f7004d315bb34ffd3322d73d tetex-2.0.2-22.EL4.4.ia64.rpm 5a0ca23db1069968333a248803187c0b tetex-afm-2.0.2-22.EL4.4.ia64.rpm fdeeb8a3e904988da6b06ce910545cf2 tetex-doc-2.0.2-22.EL4.4.ia64.rpm b92924a28ca56eada03a5e3e24891629 tetex-dvips-2.0.2-22.EL4.4.ia64.rpm 2dac870c773978a9c7049bfc45a56fc8 tetex-fonts-2.0.2-22.EL4.4.ia64.rpm 185d6d9b2ea2c65fc04e5cdb42d68172 tetex-latex-2.0.2-22.EL4.4.ia64.rpm cb3e781f24161ebf863997552b17eb28 tetex-xdvi-2.0.2-22.EL4.4.ia64.rpm ppc: b3526bdd4ac4b2645e050eb46b120fef tetex-2.0.2-22.EL4.4.ppc.rpm 4bd4a2d136c614fd12184fa6f975f03d tetex-afm-2.0.2-22.EL4.4.ppc.rpm 324623ce7f83bc85498b3468431f4a34 tetex-doc-2.0.2-22.EL4.4.ppc.rpm 3e6630554d2e6d9d24a3775d53ef05db tetex-dvips-2.0.2-22.EL4.4.ppc.rpm d1524075b8381a43811c37b68a7cadd8 tetex-fonts-2.0.2-22.EL4.4.ppc.rpm df820f28dffdbcd721bb90d002d268c9 tetex-latex-2.0.2-22.EL4.4.ppc.rpm a411d97f10aafe2f1c24f938b0de1b80 tetex-xdvi-2.0.2-22.EL4.4.ppc.rpm s390: 67d1731c40c382b68e6b2e41b459a276 tetex-2.0.2-22.EL4.4.s390.rpm 0e70a1b95bf3057e3cb46f1cd7f96655 tetex-afm-2.0.2-22.EL4.4.s390.rpm d88d319fc363565364316b8c7e34b11f tetex-doc-2.0.2-22.EL4.4.s390.rpm e87976edf77da5d891edec54a2e01dc5 tetex-dvips-2.0.2-22.EL4.4.s390.rpm 7fd9246af62e280513c5cd1a74d960c9 tetex-fonts-2.0.2-22.EL4.4.s390.rpm fce2bd0bd18b996467356235f171e160 tetex-latex-2.0.2-22.EL4.4.s390.rpm d1c6d90df13c9dd8a703a536704a0043 tetex-xdvi-2.0.2-22.EL4.4.s390.rpm s390x: 9efc79c6bb7cfb79afca130230d1df96 tetex-2.0.2-22.EL4.4.s390x.rpm 5e7f852d9d335e553f87ba1f22c84528 tetex-afm-2.0.2-22.EL4.4.s390x.rpm 041948d9d1ab97bb52fc3900feed81eb tetex-doc-2.0.2-22.EL4.4.s390x.rpm a86ef414af5736820b9c2d0692ce6c5b tetex-dvips-2.0.2-22.EL4.4.s390x.rpm 08cfa664c6bbcdc537f869f6f421effe tetex-fonts-2.0.2-22.EL4.4.s390x.rpm d1d15249a5dbe61f48a2ea30fc317597 tetex-latex-2.0.2-22.EL4.4.s390x.rpm c25be003bd1cfccbdf9c0f1f06e19573 tetex-xdvi-2.0.2-22.EL4.4.s390x.rpm x86_64: d16c24dcba2e2ed5d33138b124502c10 tetex-2.0.2-22.EL4.4.x86_64.rpm 5ef87c25c1eccd45354405fc5e5fad94 tetex-afm-2.0.2-22.EL4.4.x86_64.rpm 8af688b7a5d0451ddc77040ad95d0238 tetex-doc-2.0.2-22.EL4.4.x86_64.rpm 31e64490019b29a36a0f41f390517fe8 tetex-dvips-2.0.2-22.EL4.4.x86_64.rpm 211fe3d816ff83b6403866f1e927360a tetex-fonts-2.0.2-22.EL4.4.x86_64.rpm ef10ca5f1c4721a0c6f8b071336987b6 tetex-latex-2.0.2-22.EL4.4.x86_64.rpm 1aff9145a331d9ebb6a03bd9fad671e6 tetex-xdvi-2.0.2-22.EL4.4.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: SRPMS: 0e9f7658ff7f20c50a411b66359043d4 tetex-2.0.2-22.EL4.4.src.rpm i386: 4a864c86edbd510bf92e60d921044663 tetex-2.0.2-22.EL4.4.i386.rpm 2001bd44e3c46e850071ffb096039201 tetex-afm-2.0.2-22.EL4.4.i386.rpm 596e753eb5f3e6d0ff7473f8ae462134 tetex-doc-2.0.2-22.EL4.4.i386.rpm 023f7113ebc22db5b6b86b11153ae079 tetex-dvips-2.0.2-22.EL4.4.i386.rpm 3490e58a864bec84d1a7c5479335f7a8 tetex-fonts-2.0.2-22.EL4.4.i386.rpm 5378603b54e287c472fb258384186ca4 tetex-latex-2.0.2-22.EL4.4.i386.rpm 36a8f5600bc353c4c2f14fa5f6fda26e tetex-xdvi-2.0.2-22.EL4.4.i386.rpm x86_64: d16c24dcba2e2ed5d33138b124502c10 tetex-2.0.2-22.EL4.4.x86_64.rpm 5ef87c25c1eccd45354405fc5e5fad94 tetex-afm-2.0.2-22.EL4.4.x86_64.rpm 8af688b7a5d0451ddc77040ad95d0238 tetex-doc-2.0.2-22.EL4.4.x86_64.rpm 31e64490019b29a36a0f41f390517fe8 tetex-dvips-2.0.2-22.EL4.4.x86_64.rpm 211fe3d816ff83b6403866f1e927360a tetex-fonts-2.0.2-22.EL4.4.x86_64.rpm ef10ca5f1c4721a0c6f8b071336987b6 tetex-latex-2.0.2-22.EL4.4.x86_64.rpm 1aff9145a331d9ebb6a03bd9fad671e6 tetex-xdvi-2.0.2-22.EL4.4.x86_64.rpm Red Hat Enterprise Linux ES version 4: SRPMS: 0e9f7658ff7f20c50a411b66359043d4 tetex-2.0.2-22.EL4.4.src.rpm i386: 4a864c86edbd510bf92e60d921044663 tetex-2.0.2-22.EL4.4.i386.rpm 2001bd44e3c46e850071ffb096039201 tetex-afm-2.0.2-22.EL4.4.i386.rpm 596e753eb5f3e6d0ff7473f8ae462134 tetex-doc-2.0.2-22.EL4.4.i386.rpm 023f7113ebc22db5b6b86b11153ae079 tetex-dvips-2.0.2-22.EL4.4.i386.rpm 3490e58a864bec84d1a7c5479335f7a8 tetex-fonts-2.0.2-22.EL4.4.i386.rpm 5378603b54e287c472fb258384186ca4 tetex-latex-2.0.2-22.EL4.4.i386.rpm 36a8f5600bc353c4c2f14fa5f6fda26e tetex-xdvi-2.0.2-22.EL4.4.i386.rpm ia64: 67604c19f7004d315bb34ffd3322d73d tetex-2.0.2-22.EL4.4.ia64.rpm 5a0ca23db1069968333a248803187c0b tetex-afm-2.0.2-22.EL4.4.ia64.rpm fdeeb8a3e904988da6b06ce910545cf2 tetex-doc-2.0.2-22.EL4.4.ia64.rpm b92924a28ca56eada03a5e3e24891629 tetex-dvips-2.0.2-22.EL4.4.ia64.rpm 2dac870c773978a9c7049bfc45a56fc8 tetex-fonts-2.0.2-22.EL4.4.ia64.rpm 185d6d9b2ea2c65fc04e5cdb42d68172 tetex-latex-2.0.2-22.EL4.4.ia64.rpm cb3e781f24161ebf863997552b17eb28 tetex-xdvi-2.0.2-22.EL4.4.ia64.rpm x86_64: d16c24dcba2e2ed5d33138b124502c10 tetex-2.0.2-22.EL4.4.x86_64.rpm 5ef87c25c1eccd45354405fc5e5fad94 tetex-afm-2.0.2-22.EL4.4.x86_64.rpm 8af688b7a5d0451ddc77040ad95d0238 tetex-doc-2.0.2-22.EL4.4.x86_64.rpm 31e64490019b29a36a0f41f390517fe8 tetex-dvips-2.0.2-22.EL4.4.x86_64.rpm 211fe3d816ff83b6403866f1e927360a tetex-fonts-2.0.2-22.EL4.4.x86_64.rpm ef10ca5f1c4721a0c6f8b071336987b6 tetex-latex-2.0.2-22.EL4.4.x86_64.rpm 1aff9145a331d9ebb6a03bd9fad671e6 tetex-xdvi-2.0.2-22.EL4.4.x86_64.rpm Red Hat Enterprise Linux WS version 4: SRPMS: 0e9f7658ff7f20c50a411b66359043d4 tetex-2.0.2-22.EL4.4.src.rpm i386: 4a864c86edbd510bf92e60d921044663 tetex-2.0.2-22.EL4.4.i386.rpm 2001bd44e3c46e850071ffb096039201 tetex-afm-2.0.2-22.EL4.4.i386.rpm 596e753eb5f3e6d0ff7473f8ae462134 tetex-doc-2.0.2-22.EL4.4.i386.rpm 023f7113ebc22db5b6b86b11153ae079 tetex-dvips-2.0.2-22.EL4.4.i386.rpm 3490e58a864bec84d1a7c5479335f7a8 tetex-fonts-2.0.2-22.EL4.4.i386.rpm 5378603b54e287c472fb258384186ca4 tetex-latex-2.0.2-22.EL4.4.i386.rpm 36a8f5600bc353c4c2f14fa5f6fda26e tetex-xdvi-2.0.2-22.EL4.4.i386.rpm ia64: 67604c19f7004d315bb34ffd3322d73d tetex-2.0.2-22.EL4.4.ia64.rpm 5a0ca23db1069968333a248803187c0b tetex-afm-2.0.2-22.EL4.4.ia64.rpm fdeeb8a3e904988da6b06ce910545cf2 tetex-doc-2.0.2-22.EL4.4.ia64.rpm b92924a28ca56eada03a5e3e24891629 tetex-dvips-2.0.2-22.EL4.4.ia64.rpm 2dac870c773978a9c7049bfc45a56fc8 tetex-fonts-2.0.2-22.EL4.4.ia64.rpm 185d6d9b2ea2c65fc04e5cdb42d68172 tetex-latex-2.0.2-22.EL4.4.ia64.rpm cb3e781f24161ebf863997552b17eb28 tetex-xdvi-2.0.2-22.EL4.4.ia64.rpm x86_64: d16c24dcba2e2ed5d33138b124502c10 tetex-2.0.2-22.EL4.4.x86_64.rpm 5ef87c25c1eccd45354405fc5e5fad94 tetex-afm-2.0.2-22.EL4.4.x86_64.rpm 8af688b7a5d0451ddc77040ad95d0238 tetex-doc-2.0.2-22.EL4.4.x86_64.rpm 31e64490019b29a36a0f41f390517fe8 tetex-dvips-2.0.2-22.EL4.4.x86_64.rpm 211fe3d816ff83b6403866f1e927360a tetex-fonts-2.0.2-22.EL4.4.x86_64.rpm ef10ca5f1c4721a0c6f8b071336987b6 tetex-latex-2.0.2-22.EL4.4.x86_64.rpm 1aff9145a331d9ebb6a03bd9fad671e6 tetex-xdvi-2.0.2-22.EL4.4.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-CAN-2005-0064 https://www.cve.org/CVERecord?id=CVE-CAN-2004-1125 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2005 Red Hat, Inc. . An update for Red Hat Enterprise Linux resolves a significant buffer overflow vulnerability found in the tetex packages, which poses potential risks of remote code execution.. Red Hat Enterprise Linux,Tetex Update,Buffer Overflow,Security Patch. . LinuxSecurity.com Team

Calendar 2 Mar 16, 2005 Red Hat
89

Fedora Core 2: 2005-048 Moderate: Tetex Buffer Overflow Fix

Updated tetex package fixes another xpdf buffer overflow. The Common Vulnerabilities and Exposures projects (cve.mitre.org) has assigned the name CAN-2005-0064 to this issue.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-048 2005-01-24 ---------------------------------------------------------------------Product : Fedora Core 2 Name : tetex Version : 2.0.2 Release : 14FC2.2 Summary : The TeX text formatting system. Description : TeTeX is an implementation of TeX for Linux or UNIX systems. TeX takes a text file and a set of formatting commands as input and creates a typesetter-independent .dvi (DeVice Independent) file as output. Usually, TeX is used in conjunction with a higher level formatting package like LaTeX or PlainTeX, since TeX by itself is not very user-friendly. Install tetex if you want to use the TeX text formatting system. If you are installing tetex, you will also need to install tetex-afm (a PostScript(TM) font converter for TeX), tetex-dvips (for converting .dvi files to PostScript format for printing on PostScript printers), tetex-latex (a higher level formatting package which provides an easier-to-use interface for TeX), and tetex-xdvi (for previewing .dvi files in X). Unless you are an expert at using TeX, you should also install the tetex-doc package, which includes the documentation for TeX. ---------------------------------------------------------------------Update Information: Updated tetex package fixes another xpdf buffer overflow. The Common Vulnerabilities and Exposures projects (cve.mitre.org) has assigned the name CAN-2005-0064 to this issue. ---------------------------------------------------------------------* Wed Jan 19 2005 Jindrich Novy 2.0.2-14FC2.2 - Fix CAN-2005-0064 xpdf buffer overflow. ---------------------------------------------------------------------This update can be downloaded from: a5a81e044a2c04d3e0660b042af55885 SRPMS/tetex-2.0.2-14FC2.2.src.rpm 7814a7a4eb0dd3034f5e879d406e62be x86_64/tetex-2.0.2-14FC2.2.x86_64.rpm bbbf2332dd32a5a42cd9749f1628191e x86_64/tetex-latex-2.0.2-14FC2.2.x86_64.rpm 994b09544080c1944e12d57c761336bf x86_64/tetex-xdvi-2.0.2-14FC2.2.x86_64.rpm a1d3bb0ccaed44934f3e3a486f2b96a4 x86_64/tetex-dvips-2.0.2-14FC2.2.x86_64.rpm 06088aeb66100917f98d5214e9d94505 x86_64/tetex-afm-2.0.2-14FC2.2.x86_64.rpm e9c5029a301ad76aeb1560413ce49ae4 x86_64/tetex-fonts-2.0.2-14FC2.2.x86_64.rpm 84fa5364a63369de36ee805278c28283 x86_64/tetex-doc-2.0.2-14FC2.2.x86_64.rpm 0b0bba10010837d6e540c8147bb5ef19 x86_64/debug/tetex-debuginfo-2.0.2-14FC2.2.x86_64.rpm 20a9d0d56e250daa49c22fbf86d3542d i386/tetex-2.0.2-14FC2.2.i386.rpm 07ec2a1e12ab0de545fda03dc03e4e06 i386/tetex-latex-2.0.2-14FC2.2.i386.rpm 6daf5e9f338acfb1925064e5b597517c i386/tetex-xdvi-2.0.2-14FC2.2.i386.rpm 0426e7ce0092f67e2bed16c55459299c i386/tetex-dvips-2.0.2-14FC2.2.i386.rpm 3d7bdc9226dfd3e7837303d7dd62a911 i386/tetex-afm-2.0.2-14FC2.2.i386.rpm ff61c271196af90584fe3e8b84cc9f89 i386/tetex-fonts-2.0.2-14FC2.2.i386.rpm e5d95b7b0c2d519e36e42f0a2c3b4a17 i386/tetex-doc-2.0.2-14FC2.2.i386.rpm 9fe72e8dae433e6b675f9470a5d1d7c5 i386/debug/tetex-debuginfo-2.0.2-14FC2.2.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora Core 2 releases an update for tetex to address a vulnerability related to buffer overflow. Essential for ensuring system security and overall reliability.. Fedora Core 2,Tetex Fix,Buffer Overflow,Security Updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 26, 2005 Important Fedora
89

Fedora Core 2: FEDORA-2004-048 Critical: tetex Buffer Overflow Fix

Updated tetex package fixes another xpdf buffer overflow. The Common Vulnerabilities and Exposures projects (cve.mitre.org) has assigned the name CAN-2005-0064 to this issue.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2004-048 2005-01-24 ---------------------------------------------------------------------Product : Fedora Core 2 Name : tetex Version : 2.0.2 Release : 14FC2.2 Summary : The TeX text formatting system. Description : TeTeX is an implementation of TeX for Linux or UNIX systems. TeX takes a text file and a set of formatting commands as input and creates a typesetter-independent .dvi (DeVice Independent) file as output. Usually, TeX is used in conjunction with a higher level formatting package like LaTeX or PlainTeX, since TeX by itself is not very user-friendly. Install tetex if you want to use the TeX text formatting system. If you are installing tetex, you will also need to install tetex-afm (a PostScript(TM) font converter for TeX), tetex-dvips (for converting .dvi files to PostScript format for printing on PostScript printers), tetex-latex (a higher level formatting package which provides an easier-to-use interface for TeX), and tetex-xdvi (for previewing .dvi files in X). Unless you are an expert at using TeX, you should also install the tetex-doc package, which includes the documentation for TeX. ---------------------------------------------------------------------Update Information: Updated tetex package fixes another xpdf buffer overflow. The Common Vulnerabilities and Exposures projects (cve.mitre.org) has assigned the name CAN-2005-0064 to this issue. ---------------------------------------------------------------------* Wed Jan 19 2005 Jindrich Novy 2.0.2-14FC2.2 - Fix CAN-2005-0064 xpdf buffer overflow. ---------------------------------------------------------------------This update can be downloaded from: a5a81e044a2c04d3e0660b042af55885 SRPMS/tetex-2.0.2-14FC2.2.src.rpm 7814a7a4eb0dd3034f5e879d406e62be x86_64/tetex-2.0.2-14FC2.2.x86_64.rpm bbbf2332dd32a5a42cd9749f1628191e x86_64/tetex-latex-2.0.2-14FC2.2.x86_64.rpm 994b09544080c1944e12d57c761336bf x86_64/tetex-xdvi-2.0.2-14FC2.2.x86_64.rpm a1d3bb0ccaed44934f3e3a486f2b96a4 x86_64/tetex-dvips-2.0.2-14FC2.2.x86_64.rpm 06088aeb66100917f98d5214e9d94505 x86_64/tetex-afm-2.0.2-14FC2.2.x86_64.rpm e9c5029a301ad76aeb1560413ce49ae4 x86_64/tetex-fonts-2.0.2-14FC2.2.x86_64.rpm 84fa5364a63369de36ee805278c28283 x86_64/tetex-doc-2.0.2-14FC2.2.x86_64.rpm 0b0bba10010837d6e540c8147bb5ef19 x86_64/debug/tetex-debuginfo-2.0.2-14FC2.2.x86_64.rpm 20a9d0d56e250daa49c22fbf86d3542d i386/tetex-2.0.2-14FC2.2.i386.rpm 07ec2a1e12ab0de545fda03dc03e4e06 i386/tetex-latex-2.0.2-14FC2.2.i386.rpm 6daf5e9f338acfb1925064e5b597517c i386/tetex-xdvi-2.0.2-14FC2.2.i386.rpm 0426e7ce0092f67e2bed16c55459299c i386/tetex-dvips-2.0.2-14FC2.2.i386.rpm 3d7bdc9226dfd3e7837303d7dd62a911 i386/tetex-afm-2.0.2-14FC2.2.i386.rpm ff61c271196af90584fe3e8b84cc9f89 i386/tetex-fonts-2.0.2-14FC2.2.i386.rpm e5d95b7b0c2d519e36e42f0a2c3b4a17 i386/tetex-doc-2.0.2-14FC2.2.i386.rpm 9fe72e8dae433e6b675f9470a5d1d7c5 i386/debug/tetex-debuginfo-2.0.2-14FC2.2.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The latest tetex package for Fedora Core 2 resolves the xpdf buffer overflow vulnerability, enhancing both security measures and performance capabilities.. Tetex Update,Fedora Core 2 Security,Buffer Overflow Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 24, 2005 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here