Bug 179056

Summary: CVE-2006-0301 PDF splash handling heap overflow
Product: [Fedora] Fedora Reporter: Josh Bressers <bressers>
Component: kdegraphicsAssignee: Than Ngo <than>
Status: CLOSED CURRENTRELEASE QA Contact:
Severity: high Docs Contact:
Priority: medium    
Version: 4CC: security-response-team
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard: impact=important,embargo=yes,reported=20060126,source=vendorsec
Fixed In Version: FC5 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2006-09-22 02:17:17 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Josh Bressers 2006-01-26 21:12:45 UTC
PDF splash handling heap overflow

Dirk Mueller told vendor-sec about a buffer overflow issue in the xpdf
codebase when handling splash images.

The proposed patch is attachment 123745 [details]

Comment 3 Than Ngo 2006-02-07 10:54:31 UTC
it's now fixed in kdegraphics-3_5_1-0_2_fc4

Comment 4 Fedora Update System 2006-02-10 15:28:49 UTC
From User-Agent: XML-RPC

kdegraphics-3.5.1-0.2.fc4 has been pushed for FC4, which should resolve this issue.  If these problems are still present in this version, then please make note of it in this bug report.

Comment 5 Bill Nottingham 2006-09-22 02:17:17 UTC
Closing bugs in MODIFIED state from prior Fedora releases. If this bug persists
in a current Fedora release (such as Fedora Core 5 or later), please reopen and
set the version appropriately.