Bug#291266: vulnerable to CAN-2005-0064

2005-01-19 Thread Martin Schulze
Joey Hess wrote: > xpdf is vulnerable to a buffer overflow that can be exploited by > malicious pdfs to execute arbitrary code. The hole is described here: > http://www.idefense.com/application/poi/display?id=186&type=vulnerabilities&flashstatus=false > > I've attached a patch that adds bounds che

Bug#291266: vulnerable to CAN-2005-0064

2005-01-19 Thread Joey Hess
Package: xpdf-reader Version: 3.00-11 Severity: grave Tags: patch security xpdf is vulnerable to a buffer overflow that can be exploited by malicious pdfs to execute arbitrary code. The hole is described here: http://www.idefense.com/application/poi/display?id=186&type=vulnerabilities&flashstatus=