Secunia Logo
Netsikker nu! 2008
 
Debian update for pdfkit.framework
Secunia Advisory: SA26365
Release Date: 2007-08-08
Popularity: 4,180 views

Critical:
Moderately critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.1

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-3387


Description:
Debian has issued an update for pdfkit.framework. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system.

The vulnerability is caused due to the use of vulnerable Xpdf code, which may allow the execution of arbitrary code.

For more information:
SA26188

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.1 alias sarge --

Source archives:

http://security.debian.org/pool/updat...work/pdfkit.framework_0.8-2sarge4.dsc
Size/MD5 checksum: 725 bfe8bf57eeadaeeaa5ba33a458a8e185
http://security.debian.org/pool/updat.../pdfkit.framework_0.8-2sarge4.diff.gz
Size/MD5 checksum: 7077 a9e6dc46fa95a2763e865999b3789e50
http://security.debian.org/pool/updat...work/pdfkit.framework_0.8.orig.tar.gz
Size/MD5 checksum: 1780533 7676643ff78a0602c10bfb97fe0bd448

Alpha architecture:

http://security.debian.org/pool/updat...dfkit.framework_0.8-2sarge4_alpha.deb
Size/MD5 checksum: 1822590 0f097258e91f1d7eabf3384ecb10b3e8

AMD64 architecture:

http://security.debian.org/pool/updat...dfkit.framework_0.8-2sarge4_amd64.deb
Size/MD5 checksum: 1797204 534d18691bdd0729af9e854311408460

HP Precision architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_hppa.deb
Size/MD5 checksum: 1863092 764d3796d34c879af9a5594c4f50e5e9

Intel IA-32 architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_i386.deb
Size/MD5 checksum: 1750926 fd435c2d7270d324c74aa054c7230e96

Intel IA-64 architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_ia64.deb
Size/MD5 checksum: 1981838 c7a18c58ea887fb5b0f2194659ccdd77

Motorola 680x0 architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_m68k.deb
Size/MD5 checksum: 1786348 3b4885f47d0d55dad0e70aa20e42c73d

Big endian MIPS architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_mips.deb
Size/MD5 checksum: 1769560 9f0071e086fa239f2068d426f9dddae9

Little endian MIPS architecture:

http://security.debian.org/pool/updat...fkit.framework_0.8-2sarge4_mipsel.deb
Size/MD5 checksum: 1755228 cda830fc73806bc80e1104359fea752a

PowerPC architecture:

http://security.debian.org/pool/updat...kit.framework_0.8-2sarge4_powerpc.deb
Size/MD5 checksum: 1771430 1d2fb8df07e688855b1c716123c2213d

IBM S/390 architecture:

http://security.debian.org/pool/updat...pdfkit.framework_0.8-2sarge4_s390.deb
Size/MD5 checksum: 1805290 78cfaa378a73eae337978d3df379be99

Sun Sparc architecture:

http://security.debian.org/pool/updat...dfkit.framework_0.8-2sarge4_sparc.deb
Size/MD5 checksum: 1780538 cb9824fd6a64b10257f79d0df7c1a474

Original Advisory:
http://lists.debian.org/debian-securi...-security-announce-2007/msg00114.html

Other References:
SA26188:
http://secunia.com/advisories/26188/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Trend Micro ServerProtect Multiple Buffer Overflow Vulnerabilities // 44 views
2. IceWarp Web Mail Two File Inclusion Vulnerabilities // 40 views
3. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 28 views
4. CA ARCserve Backup Multiple Vulnerabilities // 26 views
5. CUPS Multiple Vulnerabilities // 25 views
6. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 25 views
7. ScriptsEz Easy Image Downloader "id" File Disclosure Vulnerability // 21 views
8. Gentoo Portage Insecure Python Module Search Path Security Issue // 20 views
9. FUJITSU Interstage Products Apache Tomcat Security Bypass // 20 views
10. Red Hat update for cups // 20 views