Branches for Maverick

Name Status Last Modified Last Commit
lp:ubuntu/maverick/xpdf bug 2 Mature 2010-09-10 00:16:48 UTC
19. * Revert conversion to poppler and ot...

Author: Scott Kitterman
Revision Date: 2010-09-09 08:41:26 UTC

* Revert conversion to poppler and other recent changes to get a working
  package before release on the advice of the Debian maintainer
  (LP: #611446)
  - Retain only debian/patches/fix-577031.patch from newer revisions

lp:ubuntu/maverick-security/xpdf bug 2 Mature 2011-01-21 20:20:50 UTC
20. * SECURITY UPDATE: Gfx::getPos functi...

Author: Brian Thomason
Revision Date: 2011-01-20 17:05:14 UTC

* SECURITY UPDATE: Gfx::getPos function allows context-dependent attackers to
  cause a denial of service (crash) via unknown vectors that trigger an
  uninitialized pointer dereference. (LP: #701220)
  - cve-2010-3702.dpatch: Patch provided by Debian (courtesy of Michael Gilbert)
  - CVE-2010-3702
* SECURITY UPDATE: FoFiType1::parse function allows context-dependent
  attackers to cause a denial of service (crash) and possibly execute
  arbitrary code via a PDF file with a crafted Type1 font that contains a
  negative array index, which bypasses input validation and which triggers
  memory corruption. (LP: #701220)
  - cve-2010-3704.dpatch: Patch provided by Debian (courtesy of Michael Gilbert)
  - CVE-2010-3704

lp:ubuntu/maverick-updates/xpdf 2 Mature 2011-01-21 21:14:43 UTC
20. * SECURITY UPDATE: Gfx::getPos functi...

Author: Brian Thomason
Revision Date: 2011-01-20 17:05:14 UTC

* SECURITY UPDATE: Gfx::getPos function allows context-dependent attackers to
  cause a denial of service (crash) via unknown vectors that trigger an
  uninitialized pointer dereference. (LP: #701220)
  - cve-2010-3702.dpatch: Patch provided by Debian (courtesy of Michael Gilbert)
  - CVE-2010-3702
* SECURITY UPDATE: FoFiType1::parse function allows context-dependent
  attackers to cause a denial of service (crash) and possibly execute
  arbitrary code via a PDF file with a crafted Type1 font that contains a
  negative array index, which bypasses input validation and which triggers
  memory corruption. (LP: #701220)
  - cve-2010-3704.dpatch: Patch provided by Debian (courtesy of Michael Gilbert)
  - CVE-2010-3704

13 of 3 results