From Mageia wiki
Jump to: navigation, search

MGASA-2013-0095

Date: March 16rd, 2013
Affected releases: 2
Media: Core


Description:
Updated poppler packages fix security vulnerabilities:

Invalid memory access flaws in poppler before 0.22.1 (CVE-2013-1788).

An uninitialized memory read flaw in poppler before 0.22.1 (CVE-2013-1790).

Updated Packages:
i586:
libpoppler-qt4-3-0.18.4-2.1.mga2.i586
libpoppler-glib-devel-0.18.4-2.1.mga2.i586
libpoppler-cpp0-0.18.4-2.1.mga2.i586
libpoppler-glib8-0.18.4-2.1.mga2.i586
libpoppler-gir0.18-0.18.4-2.1.mga2.i586
libpoppler-qt4-devel-0.18.4-2.1.mga2.i586
libpoppler19-0.18.4-2.1.mga2.i586
poppler-0.18.4-2.1.mga2.i586
libpoppler-devel-0.18.4-2.1.mga2.i586
libpoppler-cpp-devel-0.18.4-2.1.mga2.i586

x86_64:
poppler-0.18.4-2.1.mga2.x86_64
lib64poppler19-0.18.4-2.1.mga2.x86_64
lib64poppler-qt4-devel-0.18.4-2.1.mga2.x86_64
lib64poppler-glib-devel-0.18.4-2.1.mga2.x86_64
lib64poppler-devel-0.18.4-2.1.mga2.x86_64
lib64poppler-cpp-devel-0.18.4-2.1.mga2.x86_64
lib64poppler-glib8-0.18.4-2.1.mga2.x86_64
lib64poppler-gir0.18-0.18.4-2.1.mga2.x86_64
lib64poppler-cpp0-0.18.4-2.1.mga2.x86_64
lib64poppler-qt4-3-0.18.4-2.1.mga2.x86_64

SRPMS:
poppler-0.18.4-2.1.mga2

References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1788
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1790
http://lists.fedoraproject.org/pipermail/package-announce/2013-March/100090.html