poppler (SSA:2007-222-02)
Posted on: 08/11/2007 10:28 AM

A new poppler package is available for Slackware 12.0 to fix an integer overflow.

More details about this issue may be found in the Common
Vulnerabilities and Exposures (CVE) database:


Here are the details from the Slackware 12.0 ChangeLog:
Patched to fix an integer overflow in code borrowed from xpdf.
For more information, see:
(* Security fix *)

Where to find the new package:

HINT: Getting slow download speeds from ftp.slackware.com?
Give slackware.osuosl.org a try. This is another primary FTP site
for Slackware that can be considerably faster than downloading
from ftp.slackware.com.

Thanks to the friendly folks at the OSU Open Source Lab
(http://osuosl.org) for donating additional FTP and rsync hosting
to the Slackware project! :-)

Also see the "Get Slack" section on http://slackware.com for
additional mirror sites near you.

Updated package for Slackware 12.0:

MD5 signature:

Slackware 12.0 package:
d173df595b7767066d540890878ee444 poppler-0.5.4-i486-2_slack12.0.tgz

Installation instructions:

Upgrade the package as root:
# upgradepkg poppler-0.5.4-i486-2_slack12.0.tgz


Slackware Linux Security Team

Printed from Linux Compatible (http://www.linuxcompatible.org/news/story/poppler_ssa2007_222_02.html)