Rapid7 Vulnerability & Exploit Database

ELSA-2009-1504 Important: Enterprise Linux poppler security and bug fix update

Free InsightVM Trial No credit card necessary
Watch Demo See how it all works
Back to Search

ELSA-2009-1504 Important: Enterprise Linux poppler security and bug fix update

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
10/15/2009
Created
07/25/2018
Added
12/20/2011
Modified
07/04/2017

Description

Enterprise Linux Security Advisory ELSA-2009-1504 https://rhn.redhat.com/errata/RHSA-2009-1504.html The following updated rpms for Enterprise Linux 5 have been uploaded to the Unbreakable Linux Network: i386: poppler-0.5.4-4.4.el5_4.11.i386.rpm poppler-devel-0.5.4-4.4.el5_4.11.i386.rpm poppler-utils-0.5.4-4.4.el5_4.11.i386.rpm x86_64: poppler-0.5.4-4.4.el5_4.11.i386.rpm poppler-0.5.4-4.4.el5_4.11.x86_64.rpm poppler-devel-0.5.4-4.4.el5_4.11.i386.rpm poppler-devel-0.5.4-4.4.el5_4.11.x86_64.rpm poppler-utils-0.5.4-4.4.el5_4.11.x86_64.rpm ia64: poppler-0.5.4-4.4.el5_4.11.ia64.rpm poppler-devel-0.5.4-4.4.el5_4.11.ia64.rpm poppler-utils-0.5.4-4.4.el5_4.11.ia64.rpm SRPMS: http://oss.oracle.com/el5/SRPMS-updates/poppler-0.5.4-4.4.el5_4.11.src.rpm Description of changes: [0.5.4-4.4.el5_4.11] - Fixes various flaws addressed in bugs #526637, #526893 and #526915 which were tracked in #527403. - Resolves: #527403 [0.5.4-4.4.el5_4.10] - Add poppler-0.5.4-JBIG2-segment-reading.patch to fix reading of arithmetically encoded JBIG2 images with unknown length. - Resolves: #528147

Solution(s)

  • oracle-linux-upgrade-poppler
  • oracle-linux-upgrade-poppler-devel
  • oracle-linux-upgrade-poppler-utils

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;