| Description: | The remote host is missing updates announced in advisory RHSA-2008:0239.
Poppler is a PDF rendering library, used by applications such as Evince.
Kees Cook discovered a flaw in the way poppler displayed malformed fonts embedded in PDF files. An attacker could create a malicious PDF file that would cause applications that use poppler -- such as Evince -- to crash, or, potentially, execute arbitrary code when opened. (CVE-2008-1693)
Users are advised to upgrade to these updated packages, which contain backported patches to resolve this issue.
Solution: Please note that this update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date
http://rhn.redhat.com/errata/RHSA-2008-0239.html http://www.redhat.com/security/updates/classification/#important
Risk factor : High |