Debians sikkerhedsbulletin
DSA-971-1 xpdf -- bufferoverløb
- Rapporteret den:
- 14. feb 2006
- Berørte pakker:
- xpdf
- Sårbar:
- Ja
- Referencer i sikkerhedsdatabaser:
- I Debians fejlsporingssystem: Fejl 350783, Fejl 350785.
I Mitres CVE-ordbog: CVE-2006-0301. - Yderligere oplysninger:
-
SuSE-efterforskere har opdaget heapoverløbsfejl i xpdf, Portable Document Format (PDF)-programpakken, som kunne gøre det muligt for angribere at forårsage et lammelsesangreb (denial of service) ved at få programmet til at gå ned eller muligvis udføre vilkårlig kode.
Den gamle stabile distribution (woody) er ikke påvirket.
I den stabile distribution (sarge) er disse problemer rettet i version 3.00-13.5.
I den ustabile distribution (sid) er disse problemer rettet i version 3.01-6.
Vi anbefaler at du opgraderer dine xpdf-pakker.
- Rettet i:
-
Debian GNU/Linux 3.1 (sarge)
- Kildekode:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00-13.5.dsc
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00-13.5.diff.gz
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00.orig.tar.gz
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00-13.5.diff.gz
- Arkitekturuafhængig komponent:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-common_3.00-13.5_all.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00-13.5_all.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf_3.00-13.5_all.deb
- Alpha:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_alpha.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_alpha.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_alpha.deb
- AMD64:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_amd64.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_amd64.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_amd64.deb
- ARM:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_arm.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_arm.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_arm.deb
- Intel IA-32:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_i386.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_i386.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_i386.deb
- Intel IA-64:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_ia64.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_ia64.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_ia64.deb
- HPPA:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_hppa.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_hppa.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_hppa.deb
- Motorola 680x0:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_m68k.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_m68k.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_m68k.deb
- Big endian MIPS:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_mips.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_mips.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_mips.deb
- Little endian MIPS:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_mipsel.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_mipsel.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_mipsel.deb
- PowerPC:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_powerpc.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_powerpc.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_powerpc.deb
- IBM S/390:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_s390.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_s390.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_s390.deb
- Sun Sparc:
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-reader_3.00-13.5_sparc.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_sparc.deb
- http://security.debian.org/pool/updates/main/x/xpdf/xpdf-utils_3.00-13.5_sparc.deb
MD5-kontrolsummer for de listede filer findes i den originale sikkerhedsbulletin.