Hide Forgot
Alin Rad Pop of the Secunia Research discovered a vulnerability in xpdf/Stream.cc code: An array indexing error exists within the "DCTStream::readProgressiveDataUnit()" method in xpdf/Stream.cc. This can be exploited to corrupt memory via a specially crafted PDF file.
Created attachment 238491 [details] xpdf-3.02pl2 first draft from Derek B. Noonburg addressing CVE-2007-{4352,5392,5393} Comments from Derek: The fixes for the first two bugs (in DCTStream) are pretty straightforward. The CCITTFaxStream inner loop code has been rewritten (because I was unhappy with the design, and it was resulting in too many problems).
This is now public: http://marc.info/?l=full-disclosure&m=119445179723160&w=2
cups-1.3.4-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
KDE security advisory with official patches for kdegraphics and koffice: http://www.kde.org/info/security/advisory-20071107-1.txt
Official xpdf patch is available on xpdf upstream page: http://www.foolabs.com/xpdf/download.html ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.02pl2.patch
cups-1.2.12-7.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
poppler-0.5.4-8.fc7 has been submitted as an update for Fedora 7
poppler-0.5.4-8.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
This issue was addressed in: Red Hat Enterprise Linux: cups: http://rhn.redhat.com/errata/RHSA-2007-1021.html http://rhn.redhat.com/errata/RHSA-2007-1022.html gpdf: http://rhn.redhat.com/errata/RHSA-2007-1025.html poppler: http://rhn.redhat.com/errata/RHSA-2007-1026.html xpdf: http://rhn.redhat.com/errata/RHSA-2007-1029.html http://rhn.redhat.com/errata/RHSA-2007-1030.html tetex: http://rhn.redhat.com/errata/RHSA-2007-1027.html kdegraphics: http://rhn.redhat.com/errata/RHSA-2007-1024.html Fedora: kdegraphics: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-2985 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-3001 xpdf: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-3031 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-3014 koffice: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-3059 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-3093 cups: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-3100 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-2982 poppler: https://admin.fedoraproject.org/updates/F7/FEDORA-2008-1651 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-4031 tetex: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-3390 https://admin.fedoraproject.org/updates/F8/FEDORA-2007-3308