SciLinux: CVE-2007-4352 kdegraphics SL5.x, SL4.x i386/x86_64
Summary
Date: Tue, 13 Nov 2007 17:09:14 -0600Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for kdegraphics on SL5.x, SL4.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Important: kdegraphics security updateIssue date: 2007-11-12CVE Names: CVE-2007-4352 CVE-2007-5392 CVE-2007-5393Alin Rad Pop discovered several flaws in the handling of PDF files. Anattacker could create a malicious PDF file that would cause kpdf to crash, or potentially execute arbitrary code when opened.(CVE-2007-4352, CVE-2007-5392, CVE-2007-5393SL 4.x SRPMS:kdegraphics-3.3.1-6.src.rpm i386:kdegraphics-3.3.1-6.i386.rpmkdegraphics-devel-3.3.1-6.i386.rpm x86_64:kdegraphics-3.3.1-6.x86_64.rpmkdegraphics-devel-3.3.1-6.x86_64.rpmSL 5.x SRPMS:kdegraphics-3.5.4-5.el5_1.src.rpm i386:kdegraphics-3.5.4-5.el5.i386.rpmkdegraphics-devel-3.5.4-5.el5.i386.rpm x86_64:kdegraphics-3.5.4-5.el5.x86_64.rpmkdegraphics-devel-3.5.4-5.el5.i386.rpmkdegraphics-devel-3.5.4-5.el5.x86_64.rpm-Connie Sieh-Troy Dawson