tetex-3.0-33.2.2.1AX

エラータID: AXSA:2007-64:02

リリース日: 
2007/12/14 Friday - 14:45
題名: 
tetex-3.0-33.2.2.1AX
影響のあるチャネル: 
Asianux Server 3 for ia64
Asianux Server 3 for ppc
Asianux Server 3 for x86_64
Asianux Server 3 for x86
Severity: 
High
Description: 

TeTeX is an implementation of TeX for Linux or UNIX systems. TeX takes a text file and a set of formatting commands as input and creates a typesetter-independent .dvi (DeVice Independent) file as output.
Usually, TeX is used in conjunction with a higher level formatting package like LaTeX or PlainTeX, since TeX by itself is not very user-friendly. The output format needn't to be DVI, but also PDF, when using pdflatex or similar tools.
Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02 with xpdf-3.02pl1.patch allows remote attackers to trigger memory corruption and execute arbitrary code via a crafted PDF file. (CVE-2007-4352)
Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this issue was originally reported to be in the imagepsloadfont function in php_gd2.dll in the gd (PHP_GD2) extension in PHP 5.2.3. (CVE-2007-4033)
Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02 with xpdf-3.02pl1.patch allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow. (CVE-2007-5392)
Heap-based buffer overflow in the CCITTFaxStream::lookChar method in
xpdf/Stream.cc in Xpdf 3.02 with xpdf-3.02pl1.patch allows remote attackers to execute arbitrary code via a PDF file that contains a crafted CCITTFaxDecode filter. (CVE-2007-5393)

解決策: 

パッケージをアップデートしてください。

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. tetex-3.0-33.2.2.1AX.src.rpm
    MD5: 0845f8780871b7ac206253b6888f6797
    SHA-256: e9237d64cf915d9bc1d29e17681157c1ffcdac8aeeef915b5604cafa952cd22a
    Size: 91.90 MB

Asianux Server 3 for x86
  1. tetex-3.0-33.2.2.1AX.i386.rpm
    MD5: e1ceb19770e92590a67548f8c55acd66
    SHA-256: 3b78d3981e6e5ccf1f71f8e0d6cea15522e2b4af934a7c7f855d502148f3acff
    Size: 13.46 MB
  2. tetex-dvips-3.0-33.2.2.1AX.i386.rpm
    MD5: 82e04d8fa8ff207a3f4e89e804491cc5
    SHA-256: 8c61d5f859690f3c43f9eaee23a91e8594e73f9a9801e4f6343abc732f11f424
    Size: 594.61 kB
  3. tetex-fonts-3.0-33.2.2.1AX.i386.rpm
    MD5: 080aba608f005e6c8f4e1b151fb0120b
    SHA-256: 1ebf615225c45f4362bc4df91689ccba2fa151a10698e4c41e503afb2d3f9ee6
    Size: 29.43 MB
  4. tetex-latex-3.0-33.2.2.1AX.i386.rpm
    MD5: a202a93c3961b528a5e7d80ebe96c426
    SHA-256: baea301edf4fabe6f5b13e6614d7d89b681b7aa9b06e0d0e783bce41025a2658
    Size: 5.44 MB

Asianux Server 3 for x86_64
  1. tetex-3.0-33.2.2.1AX.x86_64.rpm
    MD5: f037a1d4ca1cf750c42ef3e5c4e70b42
    SHA-256: bc931516c048536b50e2848816c1f6978aa8f02588db023e8fbe9b76c6d24f69
    Size: 13.80 MB
  2. tetex-dvips-3.0-33.2.2.1AX.x86_64.rpm
    MD5: 4a81fe00261975c8d4945efee4efb1e8
    SHA-256: ad86312c794820184715d51b98d7e2952e0d84d82b8b30d6a136785714db3829
    Size: 612.07 kB
  3. tetex-fonts-3.0-33.2.2.1AX.x86_64.rpm
    MD5: 64ef72d9ac729662f0ed3397ecce6a32
    SHA-256: 0ea1c91762dff9738d0b9eaf535261ffea35c71ef657f5da1b556f8c326faae5
    Size: 29.51 MB
  4. tetex-latex-3.0-33.2.2.1AX.x86_64.rpm
    MD5: 6c768f1a9a8eeb9447e8c59cd9e5d23c
    SHA-256: 05f4d99696fd5d8c2b78a0ade8b2a9b71c9730c7c77fd623c4d8cf372cd08b70
    Size: 5.44 MB