whadaya know... this just in :-))
could this also be the solution to your problem?

----- Forwarded message from Martin Schulze <[EMAIL PROTECTED]> -----

To: Debian Security Announcements <[email protected]>
From: Martin Schulze <[EMAIL PROTECTED]>
Date: Wed,  2 Aug 2006 18:22:27 +0200 (CEST)
Subject: [SECURITY] [DSA 1136-1] New gpdf packages fix denial of service

- --------------------------------------------------------------------------
Debian Security Advisory DSA 1136-1                    [EMAIL PROTECTED]
http://www.debian.org/security/                             Martin Schulze
August 2nd, 2006                        http://www.debian.org/security/faq
- --------------------------------------------------------------------------

Package        : gpdf
Vulnerability  : wrong input sanitising
Problem type   : local (remote)
Debian-specific: no
CVE ID         : CVE-2005-2097
BugTraq ID     : 14529
Debian Bug     : 334454

"infamous41md" and Chris Evans discovered several heap based buffer
overflows in xpdf, the Portable Document Format (PDF) suite, which are
also present in gpdf, the viewer with Gtk bindings, and which can lead
to a denial of service by crashing the application or possibly to the
execution of arbitrary code.

For the stable distribution (sarge) these problems have been fixed in
version 2.8.2-1.2sarge5.

For the unstable distribution (sid) these problems have been fixed in
version 2.10.0-4.

We recommend that you upgrade your gpdf package.


----- End forwarded message -----

-- 
The Kid
Ira Abramov
http://ira.abramov.org/email/

=================================================================
To unsubscribe, send mail to [EMAIL PROTECTED] with
the word "unsubscribe" in the message body, e.g., run the command
echo unsubscribe | mail [EMAIL PROTECTED]

Reply via email to