USN-9-1: tetex-bin vulnerabilities

Published Oct 28, 2004
·
Updated

Chris Evans and Marcus Meissner recently discovered several integer overflow vulnerabilities in xpdf, a viewer for PDF files. Because tetex-bin contains xpdf code, it is also affected. These vulnerabilities could be exploited by an attacker providing a specially crafted TeX, LaTeX, or PDF file. Processing such a file with pdflatex could result in abnormal program termination or the execution of program code supplied by the attacker. This bug could be exploited to gain the privileges of the user invoking pdflatex.

Affected Software

2 affected componentsFixes available
All of the following
ubuntu/tetex-bin<
Ubuntu Ubuntu=4.10

Event History

Oct 28, 2004
Advisory Published
via Ubuntu·12:00 AM

Child vulnerabilities

Contains the following vulnerabilities.

Frequently Asked Questions

1

What is the severity of USN-9-1?

The severity of USN-9-1 is considered to be high due to the integer overflow vulnerabilities that could lead to exploitation.

2

How do I fix USN-9-1?

To fix USN-9-1, you should upgrade the tetex-bin package to the latest version available in your Ubuntu repositories.

3

Which versions of Ubuntu are affected by USN-9-1?

USN-9-1 affects Ubuntu version 4.10 and earlier due to the vulnerabilities present in the tetex-bin package.

4

What could an attacker do with the vulnerabilities in USN-9-1?

An attacker could exploit the vulnerabilities in USN-9-1 to execute arbitrary code by providing specially crafted input.

5

Are there any workarounds for USN-9-1?

There are no known workarounds for USN-9-1; the recommended action is to apply the provided patches or updates.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203