CVE-2005-3626

Description

From CVE.org

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference.

Statement

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Acknowledgements

Red Hat would like to thank Chris Evans for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.