Description: | Description:
The remote host is missing an update to xpdf announced via advisory FEDORA-2005-1121.
Xpdf is an X Window System based viewer for Portable Document Format (PDF) files. Xpdf is a small and efficient program which uses standard X fonts.
Update Information:
Several flaws were discovered in Xpdf. An attacker could construct a carefully crafted PDF file that could cause Xpdf to crash or possibly execute arbitrary code when opened. The Common Vulnerabilities and Exposures project assigned the name CVE-2005-3193 to these issues.
Users of Xpdf should upgrade to this updated package, which contains a patch to resolve these issues.
* Tue Dec 6 2005 Than Ngo 1:3.01-0.FC3.3 - apply upstream patch to fix CVE-2005-3193
This update can be downloaded from: http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
69dc1262d4ac1a7f706554a2aa278f1b SRPMS/xpdf-3.01-0.FC3.3.src.rpm 1c49642003d2017d0789eed36c409b8b x86_64/xpdf-3.01-0.FC3.3.x86_64.rpm 74af76cadc5d90674a21d1b0e1c245b9 x86_64/debug/xpdf-debuginfo-3.01-0.FC3.3.x86_64.rpm e87089ed6646877e1ed54018d42dd852 i386/xpdf-3.01-0.FC3.3.i386.rpm 4ec6a4425385b8de2ff961aa738cfd65 i386/debug/xpdf-debuginfo-3.01-0.FC3.3.i386.rpm
This update can also be installed with the Update Agent you can launch the Update Agent with the 'up2date' command.
--
Solution: Apply the appropriate updates. https://secure1.securityspace.com/smysecure/catid.html?in=FEDORA-2005-1121
Risk factor : High
CVSS Score: 5.1
|