|
|
|
>> SuSE Security Update Fixes Multiple Package Command Execution
|
Multiple vulnerabilities have been identified in various SuSE products, which could be exploited by attackers to cause a denial of service or compromise a vulnerable system. These issues are caused by errors in xpdf, kdegraphics3-pdf, koffice, libextractor, poppler, gpdf, cups, pdf, and pdftohtml. For additional information, see : VUPEN/ADV-2007-3774 - VUPEN/ADV-2007-3775 - VUPEN/ADV-2007-3776 - VUPEN/ADV-2007-3779
Affected Products
SUSE LINUX 10.0
SUSE LINUX 10.1
openSUSE 10.2
openSUSE 10.3
UnitedLinux 1.0
SuSE Linux Enterprise Server 8
SuSE Linux Openexchange Server 4
SuSE Linux Desktop 1.0
SuSE Linux Standard Server 8
SuSE Linux School Server
SUSE LINUX Retail Solution 8
SUSE SLES 9
SLES SDK 9
Novell Linux Desktop 9
Open Enterprise Server
Novell Linux POS 9
SUSE Linux Enterprise Desktop 10 SP1
SLE SDK 10 SP1
SUSE Linux Enterprise Server 10 SP1
Solution
Upgrade the affected packages :
http://download.opensuse.org/pub/
References
http://www.vupen.com/english/advisories/2007/3865 http://lists.opensuse.org/opensuse-security-announce/2007-11/msg00001.html
ChangeLog
2007-11-15 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time alerts with CVE, CWE, and CVSS when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form. | |

|