Bug 145053

Summary: CAN-2005-0064 xpdf buffer overflow
Product: Red Hat Enterprise Linux 4 Reporter: Josh Bressers <bressers>
Component: gpdfAssignee: Marco Pesenti Gritti <mpg>
Status: CLOSED ERRATA QA Contact:
Severity: high Docs Contact:
Priority: medium    
Version: 4.0CC: jturner, mjc, security-response-team
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard: impact=important,embargoed=20050118
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2005-02-16 13:21:15 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 142822    

Description Josh Bressers 2005-01-13 22:45:31 UTC
*** This bug has been split off bug 145049 ***

------- Original comment by Josh Bressers (Security Response Team) on 2005.01.13
17:30 -------

iDEFENSE has reported a stack based buffer overflow in xpdf.

The patch is here:
ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.00pl3.patch


The iDEFENSE advisory is attachment 109745 [details]

Comment 1 Josh Bressers 2005-01-13 22:47:35 UTC
Dan,

We're going to need some new packages rolled for RHSA-2005:027 to fix this new
issue.  Please respect the embargo when working with CVS.

Comment 2 Josh Bressers 2005-01-14 12:16:54 UTC
The patch URL does not yet work.  We don't have a patch from upstream yet.  I'll
update the bugs as soon as I know.

Comment 3 Mark J. Cox 2005-01-19 10:22:27 UTC
Now public, see URL for patch, removing embargo

Comment 4 Dan Williams 2005-01-19 16:53:07 UTC
Marco, you want to take this one?  If not I'll do it.

Comment 5 Marco Pesenti Gritti 2005-01-19 16:55:40 UTC
Dan, I'm working on it. I built the package and I'm finishing to file the
errata. I'm a bit slow because it's my first errata... hopefully I'm doing
things right ;)

Comment 6 Marco Pesenti Gritti 2005-01-19 19:49:11 UTC
I *think* everything is done here. Please let me know if there are problems,
it's my first errata, I tried to be careful but... it's not the simpler process
in the world ;)

Comment 7 Josh Bressers 2005-01-19 20:04:12 UTC
Marco,

The things look fine, thanks.  I'm moving the bug to modified.

Comment 8 Jay Turner 2005-02-16 13:21:15 UTC
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.

http://rhn.redhat.com/errata/RHSA-2005-057.html