LWN.net Logo

xpdf: arbitrary code execution

Package(s):xpdf CVE #(s):CVE-2009-1144
Created:April 7, 2009 Updated:April 8, 2009
Description: From the Gentoo advisory: Erik Wallin reported that Gentoo's Xpdf attempts to read the "xpdfrc" file from the current working directory if it cannot find a ".xpdfrc" file in the user's home directory. This is caused by a missing definition of the SYSTEM_XPDFRC macro when compiling a repackaged version of Xpdf.
Alerts:
Gentoo 200904-07 2009-04-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds