Lucene search

K
osvGoogleOSV:DSA-780-1
HistoryAug 22, 2005 - 12:00 a.m.

kdegraphics - wrong input sanitising

2005-08-2200:00:00
Google
osv.dev
10

EPSS

0.001

Percentile

28.4%

A bug has been discovered in the font handling code in xpdf, which is
also present in kpdf, the PDF viewer for KDE. A specially crafted PDF
file could cause infinite resource consumption, in terms of both CPU
and disk space.

The oldstable distribution (woody) is not affected by this problem.

For the stable distribution (sarge) this problem has been fixed in
version 3.3.2-2sarge1.

For the unstable distribution (sid) this problem will be fixed as soon
as the necessary libraries have made their C++ ABI transition.

We recommend that you upgrade your kpdf package.