[SECURITY] Fedora Core 3 Update: xpdf-3.00-10.1

Tim Waugh twaugh at redhat.com
Wed Dec 22 20:47:14 UTC 2004


---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2004-573
2004-12-22
---------------------------------------------------------------------

Product     : Fedora Core 3
Name        : xpdf
Version     : 3.00                      
Release     : 10.1                  
Summary     : A PDF file viewer for the X Window System.
Description :
Xpdf is an X Window System based viewer for Portable Document Format
(PDF) files. Xpdf is a small and efficient program which uses
standard X fonts.

---------------------------------------------------------------------
Update Information:

This package fixes a buffer overflow which allows attackers to cause the
xpdf application to crash, and possibly to execute arbitrary code.  The
Common Vulnerabilities and Exposures projects (cve.mitre.org) has assigned
the name CAN-2004-1125 to this issue.

---------------------------------------------------------------------
* Wed Dec 22 2004 Tim Waugh <twaugh at redhat.com> 1:3.00-10.1

- Applied patch to fix CAN-2004-1125 (bug #143500).


---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

adb7520d574883b3aa53c7039beed853  SRPMS/xpdf-3.00-10.1.src.rpm
0557f1caa236f794d9f71fa31a16ab9f  x86_64/xpdf-3.00-10.1.x86_64.rpm
abc2e6776d3999cd886858f77eef7112  x86_64/debug/xpdf-debuginfo-3.00-10.1.x86_64.rpm
110b6b2768f35612db180f31a6db554a  i386/xpdf-3.00-10.1.i386.rpm
73fc71cb08839a3e4ef2debc0f637591  i386/debug/xpdf-debuginfo-3.00-10.1.i386.rpm

This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.  
---------------------------------------------------------------------

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-announce-list/attachments/20041222/efef375d/attachment.sig>


More information about the fedora-announce-list mailing list