Dit bericht is nog niet vertaald

[USN-603-1] poppler vulnerability

Ubuntu Security Notice USN-603-1             April 17, 2008
poppler vulnerability
CVE-2008-1693
Kwetsbare Ubuntu versies:

Ubuntu 6.06 LTS
Ubuntu 6.10
Ubuntu 7.04
Ubuntu 7.10

Kwetsbare pakketten:

Ubuntu 6.06 LTS
libpoppler1 0.5.1-0ubuntu7.4
Ubuntu 6.10
libpoppler1 0.5.4-0ubuntu4.4
Ubuntu 7.10
libpoppler2 0.6-0ubuntu2.2
Ubuntu 7.04
libpoppler1 0.5.4-0ubuntu8.3

After a standard system upgrade you need to restart your session to effect the necessary changes.

It was discovered that the poppler PDF library did not correctly handle certain malformed embedded fonts. If a user or an automated system were tricked into opening a malicious PDF, a remote attacker could execute arbitrary code with user privileges.