Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gentoo Local Security Checks >> [GLSA-200502-10] pdftohtml: Vulnerabilities in included Xpdf


Vulnerability Assessment Details

[GLSA-200502-10] pdftohtml: Vulnerabilities in included Xpdf

Vulnerability Assessment Summary
pdftohtml: Vulnerabilities in included Xpdf

Detailed Explanation for this Vulnerability Assessment
The remote host is affected by the vulnerability described in GLSA-200502-10
(pdftohtml: Vulnerabilities in included Xpdf)


Xpdf is vulnerable to a buffer overflow, as described in GLSA
200501-28.

Impact

A possible hacker could entice a user to convert a specially-crafted PDF
file, potentially resulting in the execution of arbitrary code with the
rights of the user running pdftohtml.

Workaround

There is no known workaround at this time.

References:
http://www.gentoo.org/security/en/glsa/glsa-200501-28.xml
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0064


Solution:
All pdftohtml users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-text/pdftohtml-0.36-r3"


Network Security Threat Level: Medium


Networks Security ID:

Vulnerability Assessment Copyright: (C) 2005 Michel Arboi

Cables, Connectors


CISCO AIR-SD240GBKS4-EV 240GB 2.5 SATA 6G SSD WLC 5520 & 8540 picture

CISCO AIR-SD240GBKS4-EV 240GB 2.5 SATA 6G SSD WLC 5520 & 8540

$175.00



SanDisk 1TB SSD Plus, Internal Solid State Drive - SDSSDA-1T00-G26 picture

SanDisk 1TB SSD Plus, Internal Solid State Drive - SDSSDA-1T00-G26

$74.99



1.6TB Intel S3500 SSD SATA SSDSC2BB016T4 2.5

1.6TB Intel S3500 SSD SATA SSDSC2BB016T4 2.5" 6Gb/s G2010140 Solid State Drive

$126.00



Intel 600GB S3500 SSD 6Gb/s 2.5

Intel 600GB S3500 SSD 6Gb/s 2.5" SATA SSD SSDSC2BB600G4 Solid State Drive

$48.99



Crucial BX500 240GB Internal SSD,Micron 3D NAND SATA CT240BX500SSD1 - OEM item picture

Crucial BX500 240GB Internal SSD,Micron 3D NAND SATA CT240BX500SSD1 - OEM item

$16.99



Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot picture

Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot

$13.99



Western Digital  WDS500G1B0A-00H9H0 500GB 2.5

Western Digital WDS500G1B0A-00H9H0 500GB 2.5" SSD Grade A SKU 5036

$18.99



Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5

Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5" SATA 3 6GB/s Internal SSD PC/MAC Lot

$14.99



Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot picture

Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot

$198.99



Fanxiang 256GB 512GB 1TB 2TB 4TB Internal SSD 2.5

Fanxiang 256GB 512GB 1TB 2TB 4TB Internal SSD 2.5" SATA III 6GB/s for PC/MAC Lot

$197.99



Discussions

No Discussions have been posted on this vulnerability.