[SECURITY] Fedora Core 3 Update: gpdf-2.8.2-5.2

Raymond Strode rstrode at redhat.com
Wed Dec 7 15:47:35 UTC 2005


---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-1125
2005-12-07
---------------------------------------------------------------------

Product     : Fedora Core 3
Name        : gpdf
Version     : 2.8.2                      
Release     : 5.2                  
Summary     : viewer for Portable Document Format (PDF) files for GNOME
Description :
This is GPdf, a viewer for Portable Document Format (PDF) files for
GNOME. GPdf is based on the Xpdf program and uses additional GNOME
libraries for better desktop integration.

GPdf includes the gpdf application, a Bonobo control for PDF display
which can be embedded in Nautilus, and a Nautilus property page for
PDF files.

---------------------------------------------------------------------
Update Information:

Several flaws were discovered in Xpdf, which is used
internally by gpdf. An attacker could
construct a carefully crafted PDF file that could cause gpdf
to crash or possibly execute arbitrary code when opened. The
Common Vulnerabilities and Exposures project assigned the
name CAN-2005-3193 to these issues.

Users of gpdf should upgrade to this updated package, which
contains a patch to resolve these issues.
---------------------------------------------------------------------
* Tue Dec  6 2005 Ray Strode <rstrode at redhat.com> 2.8.2-5.2
- apply patch for CVE-2005-3193 (bug 175100)


---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

b9cd74d341bfd9a9c257407c81f9a4c3  SRPMS/gpdf-2.8.2-5.2.src.rpm
04082676195410af9988bbec54d077a1  x86_64/gpdf-2.8.2-5.2.x86_64.rpm
cd07f08c971ab7424449bec211bbf846  x86_64/debug/gpdf-debuginfo-2.8.2-5.2.x86_64.rpm
1ba354c5318dd2556f02b49f4566c56d  i386/gpdf-2.8.2-5.2.i386.rpm
6d27c4d5db419da05b21602d594841bb  i386/debug/gpdf-debuginfo-2.8.2-5.2.i386.rpm

This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.  
---------------------------------------------------------------------




More information about the fedora-announce-list mailing list