Bug#534680: libpoppler4: buffer overflow in the Abiword backend

2009-11-18 Thread Jakub Wilk

The following CVE (Common Vulnerabilities  Exposures) id was
published for poppler.

CVE-2009-3938[0]:
| Buffer overflow in the ABWOutputDev::endWord function in
| poppler/ABWOutputDev.cc in Poppler (aka libpoppler) 0.10.6, 0.12.0,
| and possibly other versions, as used by the Abiword pdftoabw utility,
| allows user-assisted remote attackers to cause a denial of service and
| possibly execute arbitrary code via a crafted PDF file.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3938
http://security-tracker.debian.org/tracker/CVE-2009-3938

--
Jakub Wilk



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#534680: libpoppler4: buffer overflow in the Abiword backend

2009-06-26 Thread Jakub Wilk

notfound 534680 0.10.6-1.1
found 534680 0.10.6-1
thanks

* Jakub Wilk uba...@users.sf.net, 2009-06-26, 12:20:

Package: libpoppler4
Version: 0.10.6-1.1

Oops, that should have been:
Version: 0.10.6-1

--
Jakub Wilk



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org