| Description: | The remote host is missing an update to cups announced via advisory MDKSA-2004:164.
iDefense reported a buffer overflow vulnerability, which affects versions of xpdf <= xpdf-3.0 and several programs, like cups, which use embedded xpdf code. An attacker could construct a malicious payload file which could enable arbitrary code execution on the target system.
The updated packages are patched to protect against these vulnerabilities.
Affected versions: 10.0, 10.1, 9.2, Corporate Server 2.1, Multi Network Firewall 8.2
Solution: To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.
http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2004:164 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1125
Risk factor : Critical |