SciLinux: CVE-2007-4352 xpdf SL4.x i386/x86_64
Summary
Date: Wed, 7 Nov 2007 17:08:55 -0600Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for xpdf on SL4.x i386/x86_64Comments: To: scientific Synopsis: Important: xpdf security updateCVE Names: CVE-2007-4352 CVE-2007-5392 CVE-2007-5393Problem description:Alin Rad Pop discovered several flaws in the handling of PDF files. Anattacker could create a malicious PDF file that would cause Xpdf to crash,or potentially execute arbitrary code when opened.(CVE-2007-4352, CVE-2007-5392, CVE-2007-5393)SL4.xSRPMS: xpdf-3.00-14.el4.src.rpmi386: xpdf-3.00-14.el4.i386.rpmx86_64: xpdf-3.00-14.el4.x86_64.rpm-Connie Sieh