First published: Thu Oct 15 2009(Updated: )
Xpdf is an X Window System based viewer for Portable Document Format (PDF)<br>files.<br>Multiple integer overflow flaws were found in Xpdf. An attacker could<br>create a malicious PDF file that would cause Xpdf to crash or, potentially,<br>execute arbitrary code when opened. (CVE-2009-0791, CVE-2009-1188,<br>CVE-2009-3604, CVE-2009-3606, CVE-2009-3608, CVE-2009-3609)<br>Red Hat would like to thank Adam Zabrocki for reporting the CVE-2009-3604<br>issue, and Chris Rohlf for reporting the CVE-2009-3608 issue.<br>Users are advised to upgrade to this updated package, which contains a<br>backported patch to correct these issues.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/xpdf | <3.00-22.el4_8.1 | 3.00-22.el4_8.1 |
redhat/xpdf | <3.00-22.el4_8.1 | 3.00-22.el4_8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.