|
|||||||||||
|
[ MDKSA-2007:159 ] - Updated gpdf packages fix vulnerability
From: <security(at)mandriva.com>
Date: Mon Aug 13 2007 - 20:33:15 EDT -----BEGIN PGP SIGNED MESSAGE-----
Mandriva Linux Security Advisory MDKSA-2007:159http://www.mandriva.com/security/ Package : gpdf Date : August 13, 2007 Affected: Corporate 3.0 Problem Description: Maurycy Prodeus found an integer overflow vulnerability in the way various PDF viewers processed PDF files. An attacker could create a malicious PDF file that could cause gpdf to crash and possibly execute arbitrary code open a user opening the file. This update provides packages which are patched to prevent these issues. References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3387 Updated Packages:
Corporate 3.0:
Corporate 3.0/X86_64:
To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com
Type Bits/KeyID Date User ID
iD8DBQFGwM1tmqjQ0CJFipgRAolJAKC/iV/5iLoYDqPdKiC0GLwIimv12gCeKNeQ
eWAqWhjy8op4OcX/HcXsVLc=
This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:11:43 EDT |
||||||||||
|
|||||||||||