Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.1.1.2005.780
Category:Debian Local Security Checks
Title:Debian: Security Advisory (DSA-780-1)
Summary:The remote host is missing an update for the Debian 'kdegraphics' package(s) announced via the DSA-780-1 advisory.
Description:Summary:
The remote host is missing an update for the Debian 'kdegraphics' package(s) announced via the DSA-780-1 advisory.

Vulnerability Insight:
A bug has been discovered in the font handling code in xpdf, which is also present in kpdf, the PDF viewer for KDE. A specially crafted PDF file could cause infinite resource consumption, in terms of both CPU and disk space.

The oldstable distribution (woody) is not affected by this problem.

For the stable distribution (sarge) this problem has been fixed in version 3.3.2-2sarge1.

For the unstable distribution (sid) this problem will be fixed as soon as the necessary libraries have made their C++ ABI transition.

We recommend that you upgrade your kpdf package.

Affected Software/OS:
'kdegraphics' package(s) on Debian 3.1.

Solution:
Please install the updated package(s).

CVSS Score:
2.1

CVSS Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2005-2097
102972
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102972-1
14529
http://www.securityfocus.com/bid/14529
17277
http://secunia.com/advisories/17277
18398
http://secunia.com/advisories/18398
18407
http://secunia.com/advisories/18407
21339
http://secunia.com/advisories/21339
25729
http://secunia.com/advisories/25729
ADV-2007-2280
http://www.vupen.com/english/advisories/2007/2280
DSA-1136
http://www.debian.org/security/2006/dsa-1136
DSA-780
http://www.debian.org/security/2005/dsa-780
DSA-936
http://www.debian.org/security/2006/dsa-936
FLSA-2006:176751
http://www.securityfocus.com/archive/1/427053/100/0/threaded
FLSA:175404
http://www.securityfocus.com/archive/1/427990/100/0/threaded
MDKSA-2005:138
http://www.mandriva.com/security/advisories?name=MDKSA-2005:138
RHSA-2005:670
http://www.redhat.com/support/errata/RHSA-2005-670.html
RHSA-2005:671
http://www.redhat.com/support/errata/RHSA-2005-671.html
RHSA-2005:706
http://www.redhat.com/support/errata/RHSA-2005-706.html
RHSA-2005:708
http://www.redhat.com/support/errata/RHSA-2005-708.html
SCOSA-2005.42
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.42/SCOSA-2005.42.txt
SUSE-SR:2005:019
http://www.novell.com/linux/security/advisories/2005_19_sr.html
USN-163-1
https://usn.ubuntu.com/163-1/
oval:org.mitre.oval:def:10280
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10280
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.