Rapid7 Vulnerability & Exploit Database

SUSE Linux Security Advisory: SUSE-SR:2009:012

Back to Search

SUSE Linux Security Advisory: SUSE-SR:2009:012

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
04/23/2009
Created
07/25/2018
Added
12/12/2013
Modified
03/21/2018

Description

Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, as used in Poppler and other products, when running on Mac OS X, has unspecified impact, related to "g*allocn."

Solution(s)

  • suse-upgrade-acroread
  • suse-upgrade-acroread_ja
  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-apache2-mod_php5
  • suse-upgrade-cups
  • suse-upgrade-cups-client
  • suse-upgrade-cups-devel
  • suse-upgrade-cups-libs
  • suse-upgrade-cups-libs-32bit
  • suse-upgrade-cups-libs-64bit
  • suse-upgrade-cups-libs-x86
  • suse-upgrade-graphicsmagick
  • suse-upgrade-graphicsmagick-devel
  • suse-upgrade-gstreamer-0_10-plugins-bad
  • suse-upgrade-gstreamer-0_10-plugins-bad-devel
  • suse-upgrade-gstreamer-0_10-plugins-bad-doc
  • suse-upgrade-gstreamer-0_10-plugins-bad-lang
  • suse-upgrade-gstreamer010-plugins-bad
  • suse-upgrade-gstreamer010-plugins-bad-devel
  • suse-upgrade-gstreamer010-plugins-bad-doc
  • suse-upgrade-imagemagick
  • suse-upgrade-imagemagick-devel
  • suse-upgrade-imagemagick-extra
  • suse-upgrade-imagemagick-magick
  • suse-upgrade-imagemagick-magick-devel
  • suse-upgrade-ipsec-tools
  • suse-upgrade-irssi
  • suse-upgrade-irssi-devel
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-kdegraphics3
  • suse-upgrade-kdegraphics3-3d
  • suse-upgrade-kdegraphics3-devel
  • suse-upgrade-kdegraphics3-extra
  • suse-upgrade-kdegraphics3-fax
  • suse-upgrade-kdegraphics3-imaging
  • suse-upgrade-kdegraphics3-kamera
  • suse-upgrade-kdegraphics3-pdf
  • suse-upgrade-kdegraphics3-postscript
  • suse-upgrade-kdegraphics3-scan
  • suse-upgrade-kdegraphics3-tex
  • suse-upgrade-libgraphicsmagick-1
  • suse-upgrade-libgraphicsmagick-2
  • suse-upgrade-libgraphicsmagick-devel
  • suse-upgrade-libgraphicsmagick1
  • suse-upgrade-libgraphicsmagick2
  • suse-upgrade-libgraphicsmagickwand0
  • suse-upgrade-libgraphicsmagickwand1
  • suse-upgrade-libgstapp-0_10-0
  • suse-upgrade-libmagick-1
  • suse-upgrade-libmagick-10
  • suse-upgrade-libmagick-devel
  • suse-upgrade-libmagick10
  • suse-upgrade-libmagickcore1
  • suse-upgrade-libmagickcore1-32bit
  • suse-upgrade-libmagickcore1-64bit
  • suse-upgrade-libmagickwand1
  • suse-upgrade-libmagickwand1-32bit
  • suse-upgrade-libmagickwand1-64bit
  • suse-upgrade-libopenssl-devel
  • suse-upgrade-libopenssl0_9_8
  • suse-upgrade-libopenssl0_9_8-32bit
  • suse-upgrade-libopenssl0_9_8-64bit
  • suse-upgrade-libopenssl0_9_8-x86
  • suse-upgrade-libpoppler3
  • suse-upgrade-libpoppler4
  • suse-upgrade-libsnmp15
  • suse-upgrade-libwand10
  • suse-upgrade-mozilla-xulrunner190
  • suse-upgrade-mozilla-xulrunner190-32bit
  • suse-upgrade-mozilla-xulrunner190-64bit
  • suse-upgrade-mozilla-xulrunner190-devel
  • suse-upgrade-mozilla-xulrunner190-gnomevfs
  • suse-upgrade-mozilla-xulrunner190-gnomevfs-32bit
  • suse-upgrade-mozilla-xulrunner190-gnomevfs-64bit
  • suse-upgrade-mozilla-xulrunner190-translations
  • suse-upgrade-mozilla-xulrunner190-translations-32bit
  • suse-upgrade-mozilla-xulrunner190-translations-64bit
  • suse-upgrade-mozillafirefox
  • suse-upgrade-mozillafirefox-translations
  • suse-upgrade-net-snmp
  • suse-upgrade-net-snmp-32bit
  • suse-upgrade-net-snmp-64bit
  • suse-upgrade-net-snmp-devel
  • suse-upgrade-net-snmp-devel-64bit
  • suse-upgrade-novell-ipsec-tools
  • suse-upgrade-novell-ipsec-tools-devel
  • suse-upgrade-openssl
  • suse-upgrade-openssl-certs
  • suse-upgrade-openssl-doc
  • suse-upgrade-optipng
  • suse-upgrade-perl
  • suse-upgrade-perl-32bit
  • suse-upgrade-perl-64bit
  • suse-upgrade-perl-base
  • suse-upgrade-perl-base-32bit
  • suse-upgrade-perl-base-64bit
  • suse-upgrade-perl-compress-raw-zlib
  • suse-upgrade-perl-dbd-pg
  • suse-upgrade-perl-doc
  • suse-upgrade-perl-graphicsmagick
  • suse-upgrade-perl-perlmagick
  • suse-upgrade-perl-snmp
  • suse-upgrade-perl-x86
  • suse-upgrade-php5-bcmath
  • suse-upgrade-php5-bz2
  • suse-upgrade-php5-calendar
  • suse-upgrade-php5-ctype
  • suse-upgrade-php5-curl
  • suse-upgrade-php5-dba
  • suse-upgrade-php5-dbase
  • suse-upgrade-php5-devel
  • suse-upgrade-php5-dom
  • suse-upgrade-php5-exif
  • suse-upgrade-php5-fastcgi
  • suse-upgrade-php5-ftp
  • suse-upgrade-php5-gd
  • suse-upgrade-php5-gettext
  • suse-upgrade-php5-gmp
  • suse-upgrade-php5-hash
  • suse-upgrade-php5-iconv
  • suse-upgrade-php5-imap
  • suse-upgrade-php5-json
  • suse-upgrade-php5-ldap
  • suse-upgrade-php5-mbstring
  • suse-upgrade-php5-mcrypt
  • suse-upgrade-php5-mhash
  • suse-upgrade-php5-mysql
  • suse-upgrade-php5-ncurses
  • suse-upgrade-php5-odbc
  • suse-upgrade-php5-openssl
  • suse-upgrade-php5-pcntl
  • suse-upgrade-php5-pdo
  • suse-upgrade-php5-pear
  • suse-upgrade-php5-pgsql
  • suse-upgrade-php5-posix
  • suse-upgrade-php5-pspell
  • suse-upgrade-php5-readline
  • suse-upgrade-php5-shmop
  • suse-upgrade-php5-snmp
  • suse-upgrade-php5-soap
  • suse-upgrade-php5-sockets
  • suse-upgrade-php5-sqlite
  • suse-upgrade-php5-suhosin
  • suse-upgrade-php5-sysvmsg
  • suse-upgrade-php5-sysvsem
  • suse-upgrade-php5-sysvshm
  • suse-upgrade-php5-tidy
  • suse-upgrade-php5-tokenizer
  • suse-upgrade-php5-wddx
  • suse-upgrade-php5-xmlreader
  • suse-upgrade-php5-xmlrpc
  • suse-upgrade-php5-xmlwriter
  • suse-upgrade-php5-xsl
  • suse-upgrade-php5-zip
  • suse-upgrade-php5-zlib
  • suse-upgrade-poppler
  • suse-upgrade-poppler-devel
  • suse-upgrade-poppler-doc
  • suse-upgrade-poppler-glib
  • suse-upgrade-poppler-qt
  • suse-upgrade-poppler-qt4
  • suse-upgrade-poppler-tools
  • suse-upgrade-python-xpcom190
  • suse-upgrade-quagga
  • suse-upgrade-quagga-devel
  • suse-upgrade-snmp-mibs
  • suse-upgrade-strongswan
  • suse-upgrade-strongswan-doc
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-tomcat6
  • suse-upgrade-tomcat6-admin-webapps
  • suse-upgrade-tomcat6-docs-webapp
  • suse-upgrade-tomcat6-javadoc
  • suse-upgrade-tomcat6-jsp-2_1-api
  • suse-upgrade-tomcat6-lib
  • suse-upgrade-tomcat6-servlet-2_5-api
  • suse-upgrade-tomcat6-webapps
  • suse-upgrade-xpdf
  • suse-upgrade-xpdf-tools
  • suse-upgrade-yast2-ldap-server

References

  • suse-upgrade-acroread
  • suse-upgrade-acroread_ja
  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-apache2-mod_php5
  • suse-upgrade-cups
  • suse-upgrade-cups-client
  • suse-upgrade-cups-devel
  • suse-upgrade-cups-libs
  • suse-upgrade-cups-libs-32bit
  • suse-upgrade-cups-libs-64bit
  • suse-upgrade-cups-libs-x86
  • suse-upgrade-graphicsmagick
  • suse-upgrade-graphicsmagick-devel
  • suse-upgrade-gstreamer-0_10-plugins-bad
  • suse-upgrade-gstreamer-0_10-plugins-bad-devel
  • suse-upgrade-gstreamer-0_10-plugins-bad-doc
  • suse-upgrade-gstreamer-0_10-plugins-bad-lang
  • suse-upgrade-gstreamer010-plugins-bad
  • suse-upgrade-gstreamer010-plugins-bad-devel
  • suse-upgrade-gstreamer010-plugins-bad-doc
  • suse-upgrade-imagemagick
  • suse-upgrade-imagemagick-devel
  • suse-upgrade-imagemagick-extra
  • suse-upgrade-imagemagick-magick
  • suse-upgrade-imagemagick-magick-devel
  • suse-upgrade-ipsec-tools
  • suse-upgrade-irssi
  • suse-upgrade-irssi-devel
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-kdegraphics3
  • suse-upgrade-kdegraphics3-3d
  • suse-upgrade-kdegraphics3-devel
  • suse-upgrade-kdegraphics3-extra
  • suse-upgrade-kdegraphics3-fax
  • suse-upgrade-kdegraphics3-imaging
  • suse-upgrade-kdegraphics3-kamera
  • suse-upgrade-kdegraphics3-pdf
  • suse-upgrade-kdegraphics3-postscript
  • suse-upgrade-kdegraphics3-scan
  • suse-upgrade-kdegraphics3-tex
  • suse-upgrade-libgraphicsmagick-1
  • suse-upgrade-libgraphicsmagick-2
  • suse-upgrade-libgraphicsmagick-devel
  • suse-upgrade-libgraphicsmagick1
  • suse-upgrade-libgraphicsmagick2
  • suse-upgrade-libgraphicsmagickwand0
  • suse-upgrade-libgraphicsmagickwand1
  • suse-upgrade-libgstapp-0_10-0
  • suse-upgrade-libmagick-1
  • suse-upgrade-libmagick-10
  • suse-upgrade-libmagick-devel
  • suse-upgrade-libmagick10
  • suse-upgrade-libmagickcore1
  • suse-upgrade-libmagickcore1-32bit
  • suse-upgrade-libmagickcore1-64bit
  • suse-upgrade-libmagickwand1
  • suse-upgrade-libmagickwand1-32bit
  • suse-upgrade-libmagickwand1-64bit
  • suse-upgrade-libopenssl-devel
  • suse-upgrade-libopenssl0_9_8
  • suse-upgrade-libopenssl0_9_8-32bit
  • suse-upgrade-libopenssl0_9_8-64bit
  • suse-upgrade-libopenssl0_9_8-x86
  • suse-upgrade-libpoppler3
  • suse-upgrade-libpoppler4
  • suse-upgrade-libsnmp15
  • suse-upgrade-libwand10
  • suse-upgrade-mozilla-xulrunner190
  • suse-upgrade-mozilla-xulrunner190-32bit
  • suse-upgrade-mozilla-xulrunner190-64bit
  • suse-upgrade-mozilla-xulrunner190-devel
  • suse-upgrade-mozilla-xulrunner190-gnomevfs
  • suse-upgrade-mozilla-xulrunner190-gnomevfs-32bit
  • suse-upgrade-mozilla-xulrunner190-gnomevfs-64bit
  • suse-upgrade-mozilla-xulrunner190-translations
  • suse-upgrade-mozilla-xulrunner190-translations-32bit
  • suse-upgrade-mozilla-xulrunner190-translations-64bit
  • suse-upgrade-mozillafirefox
  • suse-upgrade-mozillafirefox-translations
  • suse-upgrade-net-snmp
  • suse-upgrade-net-snmp-32bit
  • suse-upgrade-net-snmp-64bit
  • suse-upgrade-net-snmp-devel
  • suse-upgrade-net-snmp-devel-64bit
  • suse-upgrade-novell-ipsec-tools
  • suse-upgrade-novell-ipsec-tools-devel
  • suse-upgrade-openssl
  • suse-upgrade-openssl-certs
  • suse-upgrade-openssl-doc
  • suse-upgrade-optipng
  • suse-upgrade-perl
  • suse-upgrade-perl-32bit
  • suse-upgrade-perl-64bit
  • suse-upgrade-perl-base
  • suse-upgrade-perl-base-32bit
  • suse-upgrade-perl-base-64bit
  • suse-upgrade-perl-compress-raw-zlib
  • suse-upgrade-perl-dbd-pg
  • suse-upgrade-perl-doc
  • suse-upgrade-perl-graphicsmagick
  • suse-upgrade-perl-perlmagick
  • suse-upgrade-perl-snmp
  • suse-upgrade-perl-x86
  • suse-upgrade-php5-bcmath
  • suse-upgrade-php5-bz2
  • suse-upgrade-php5-calendar
  • suse-upgrade-php5-ctype
  • suse-upgrade-php5-curl
  • suse-upgrade-php5-dba
  • suse-upgrade-php5-dbase
  • suse-upgrade-php5-devel
  • suse-upgrade-php5-dom
  • suse-upgrade-php5-exif
  • suse-upgrade-php5-fastcgi
  • suse-upgrade-php5-ftp
  • suse-upgrade-php5-gd
  • suse-upgrade-php5-gettext
  • suse-upgrade-php5-gmp
  • suse-upgrade-php5-hash
  • suse-upgrade-php5-iconv
  • suse-upgrade-php5-imap
  • suse-upgrade-php5-json
  • suse-upgrade-php5-ldap
  • suse-upgrade-php5-mbstring
  • suse-upgrade-php5-mcrypt
  • suse-upgrade-php5-mhash
  • suse-upgrade-php5-mysql
  • suse-upgrade-php5-ncurses
  • suse-upgrade-php5-odbc
  • suse-upgrade-php5-openssl
  • suse-upgrade-php5-pcntl
  • suse-upgrade-php5-pdo
  • suse-upgrade-php5-pear
  • suse-upgrade-php5-pgsql
  • suse-upgrade-php5-posix
  • suse-upgrade-php5-pspell
  • suse-upgrade-php5-readline
  • suse-upgrade-php5-shmop
  • suse-upgrade-php5-snmp
  • suse-upgrade-php5-soap
  • suse-upgrade-php5-sockets
  • suse-upgrade-php5-sqlite
  • suse-upgrade-php5-suhosin
  • suse-upgrade-php5-sysvmsg
  • suse-upgrade-php5-sysvsem
  • suse-upgrade-php5-sysvshm
  • suse-upgrade-php5-tidy
  • suse-upgrade-php5-tokenizer
  • suse-upgrade-php5-wddx
  • suse-upgrade-php5-xmlreader
  • suse-upgrade-php5-xmlrpc
  • suse-upgrade-php5-xmlwriter
  • suse-upgrade-php5-xsl
  • suse-upgrade-php5-zip
  • suse-upgrade-php5-zlib
  • suse-upgrade-poppler
  • suse-upgrade-poppler-devel
  • suse-upgrade-poppler-doc
  • suse-upgrade-poppler-glib
  • suse-upgrade-poppler-qt
  • suse-upgrade-poppler-qt4
  • suse-upgrade-poppler-tools
  • suse-upgrade-python-xpcom190
  • suse-upgrade-quagga
  • suse-upgrade-quagga-devel
  • suse-upgrade-snmp-mibs
  • suse-upgrade-strongswan
  • suse-upgrade-strongswan-doc
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-tomcat6
  • suse-upgrade-tomcat6-admin-webapps
  • suse-upgrade-tomcat6-docs-webapp
  • suse-upgrade-tomcat6-javadoc
  • suse-upgrade-tomcat6-jsp-2_1-api
  • suse-upgrade-tomcat6-lib
  • suse-upgrade-tomcat6-servlet-2_5-api
  • suse-upgrade-tomcat6-webapps
  • suse-upgrade-xpdf
  • suse-upgrade-xpdf-tools
  • suse-upgrade-yast2-ldap-server

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;