Family: Fedora Local Security Checks --> Category: infos
Fedora Core 3 2005-730: xpdf Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the xpdf package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2005-730 (xpdf).
Xpdf is an X Window System based viewer for Portable Document Format
(PDF) files. Xpdf is a small and efficient program which uses
standard X fonts.
A flaw was discovered in Xpdf in that a possible hacker could
construct a carefully crafted PDF file that would cause Xpdf
to consume all available disk space in /tmp when opened. The
Common Vulnerabilities and Exposures project assigned the name
CVE-2005-2097 to this issue.
Users of xpdf should upgrade to this updated package, which
contains a backported patch to resolve this issue.
Solution : http://www.fedoranews.org/blog/index.php?p=838
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.