ELSA-2010-0401

ELSA-2010-0401 - tetex security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-05-06

Description



[1.0.7-67.19]
- apply patch for CVE-2007-5935 in proper location

[1.0.7-67.18]
- add overflow check for CVE-2009-0791
- unify pacthes for 2010-0739 and CVE-2010-1440

[1.0.7-67.17]
- fix version typos in the last changelog entries

[1.0.7-67.16]
- include limits.h for INT_MAX

[1.0.7-67.15]
- fix CVE-2009-0791 patch, xpdf in this old version doesn't know
anything about GMEM_EXCEP

[1.0.7-67.14]
- add another hunk to CVE-2010-0827 patch to fix tfmload.c as well
(https://bugzilla.redhat.com/show_bug.cgi?id=577322#c3)

[1.0.7-67.13]
- fix virtual fonts patch, CVE-2010-0827
(https://bugzilla.redhat.com/show_bug.cgi?id=572914#c11)

[1.0.7-67.12]
- fix CVE-2007-5935 CVE-2007-5936 CVE-2007-5937 CVE-2009-0791 CVE-2009-3609
CVE-2010-0739 CVE-2010-0827
Resolves: #577309


Related CVEs



Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 3 (i386) tetex-1.0.7-67.19.src.rpm2106fa7ccbfd30686736dc7ccb8617ba-
tetex-1.0.7-67.19.i386.rpm2b1e655c027f2ef268f41a78d7619f67-
tetex-afm-1.0.7-67.19.i386.rpm53fc1f2ec324443d32e51b2b9a79d77f-
tetex-dvips-1.0.7-67.19.i386.rpm3ed280c4a91e425375c258307b240673-
tetex-fonts-1.0.7-67.19.i386.rpm9499c5a64bb8416e63fc05e50a2a6656-
tetex-latex-1.0.7-67.19.i386.rpm32da848d589e8fad3c1ab2afafab6247-
tetex-xdvi-1.0.7-67.19.i386.rpm6cb59374fcd39e4d5b0b2e7a88ad2cb2-
Oracle Linux 3 (x86_64) tetex-1.0.7-67.19.src.rpm2106fa7ccbfd30686736dc7ccb8617ba-
tetex-1.0.7-67.19.x86_64.rpmf103ef920b596c7e589ebec810dbe8ed-
tetex-afm-1.0.7-67.19.x86_64.rpm9e8998a4cb615d22da057380a3aa391a-
tetex-dvips-1.0.7-67.19.x86_64.rpmc2faf100ca8eb9729a7e6280eb504e6b-
tetex-fonts-1.0.7-67.19.x86_64.rpm41b7aa4a942ee2cf5e6c63996635d141-
tetex-latex-1.0.7-67.19.x86_64.rpm442c4f8ffdafdb181ab9db0f7cbb5853-
tetex-xdvi-1.0.7-67.19.x86_64.rpm032d279a6a7e217471e8b6bae4da1dd7-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete