[Bug 224448] poppler appears to be hit by CVE-2007-0104

bugzilla at redhat.com bugzilla at redhat.com
Sat Apr 5 05:14:20 UTC 2008


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: poppler appears to be hit by CVE-2007-0104


https://bugzilla.redhat.com/show_bug.cgi?id=224448





------- Additional Comments From michal at harddata.com  2008-04-05 01:14 EST -------
(Eh?  Something ate half of my comment.  Again.)
I just do not know.  I would have to dig through a package code
and I hoped that a package owner will know an answer right away
(or if this is even applicable to the current poppler version).

Changelog for poppler-0.5.4-8.fc7 (the same code base) lists explicitely
  CVE-2007-3387 (#248194), CVE-2007-4352 (#345101),
  CVE-2007-5392 (#345111), CVE-2007-5393 (#345121)
but for poppler-0.6.2-1.fc8 not even that.


-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the fedora-triage-list mailing list