[tex-live] xpdf libraries and security update

Frank Küster frank at kuesterei.ch
Thu Aug 18 17:50:20 CEST 2005


Norbert Preining <preining at logic.at> wrote:

> Dear friends!
>
> As far as I see the xpdf in our depot is still vulnerable to
> 	CAN-2005-2097: DoS through PDFs with crafted loca tables
> Does this hit TeX live? Which programs do make use of xpdf libraries?

Do you actually provide xpdf?  The xpdf code used for pdfTeX, pdftosrc
etc. is not affected, only interactive uses are - see the mails of
Martin Schröder and Derek in 

http://bugs.debian.org/322467

Regards, Frank
-- 
Frank Küster
Inst. f. Biochemie der Univ. Zürich
Debian Developer



More information about the tex-live mailing list