Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:Fedora Local Security Checks
Title:Fedora Core 3 FEDORA-2005-1121 (xpdf)

The remote host is missing an update to xpdf
announced via advisory FEDORA-2005-1121.

Xpdf is an X Window System based viewer for Portable Document Format
(PDF) files. Xpdf is a small and efficient program which uses
standard X fonts.

Update Information:

Several flaws were discovered in Xpdf. An attacker could
construct a carefully crafted PDF file that could cause Xpdf
to crash or possibly execute arbitrary code when opened. The
Common Vulnerabilities and Exposures project assigned the
name CVE-2005-3193 to these issues.

Users of Xpdf should upgrade to this updated package, which
contains a patch to resolve these issues.

* Tue Dec 6 2005 Than Ngo 1:3.01-0.FC3.3
- apply upstream patch to fix CVE-2005-3193

This update can be downloaded from:

69dc1262d4ac1a7f706554a2aa278f1b SRPMS/xpdf-3.01-0.FC3.3.src.rpm
1c49642003d2017d0789eed36c409b8b x86_64/xpdf-3.01-0.FC3.3.x86_64.rpm
74af76cadc5d90674a21d1b0e1c245b9 x86_64/debug/xpdf-debuginfo-3.01-0.FC3.3.x86_64.rpm
e87089ed6646877e1ed54018d42dd852 i386/xpdf-3.01-0.FC3.3.i386.rpm
4ec6a4425385b8de2ff961aa738cfd65 i386/debug/xpdf-debuginfo-3.01-0.FC3.3.i386.rpm

This update can also be installed with the Update Agent
you can
launch the Update Agent with the 'up2date' command.


Solution: Apply the appropriate updates.

Risk factor : High

CVSS Score:

Cross-Ref: BugTraq ID: 15721
Common Vulnerability Exposure (CVE) ID: CVE-2005-3193
Bugtraq: 20051207 [KDE Security Advisory] multiple buffer overflows in kpdf/koffice (Google Search)
Debian Security Information: DSA-931 (Google Search)
Debian Security Information: DSA-932 (Google Search)
Debian Security Information: DSA-936 (Google Search)
Debian Security Information: DSA-937 (Google Search)
Debian Security Information: DSA-938 (Google Search)
Debian Security Information: DSA-940 (Google Search)
Debian Security Information: DSA-950 (Google Search)
Debian Security Information: DSA-961 (Google Search)
Debian Security Information: DSA-962 (Google Search)
RedHat Security Advisories: RHSA-2005:868
SCO Security Bulletin: SCOSA-2006.15
SCO Security Bulletin: SCOSA-2006.20
SCO Security Bulletin: SCOSA-2006.21
SGI Security Advisory: 20051201-01-U
SGI Security Advisory: 20060101-01-U
SGI Security Advisory: 20060201-01-U
SuSE Security Announcement: SUSE-SA:2006:001 (Google Search)
SuSE Security Announcement: SUSE-SR:2005:029 (Google Search)
XForce ISS Database: xpdf-jpx-stream-bo(23441)
CopyrightCopyright (c) 2005 E-Soft Inc.

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2022 E-Soft Inc. All rights reserved.