SciLinux: CVE-2007-4352 gpdf SL4.x i386/x86_64
Summary
Date: Wed, 7 Nov 2007 17:14:47 -0600Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for gpdf on SL4.x i386/x86_64Comments: To: scientific Synopsis: Important: gpdf security updateCVE Names: CVE-2007-4352 CVE-2007-5392 CVE-2007-5393Problem description:Alin Rad Pop discovered several flaws in the handling of PDF files. Anattacker could create a malicious PDF file that would cause gpdf to crash,or potentially execute arbitrary code when opened.(CVE-2007-4352, CVE-2007-5392, CVE-2007-5393)SL4.xSRPMS: gpdf-2.8.2-7.7.1.src.rpmi386: gpdf-2.8.2-7.7.1.i386.rpmx86_64: gpdf-2.8.2-7.7.1.x86_64.rpm-Connie Sieh-Troy Dawson