• Skip to content
  • Skip to link menu
The KOffice Project
  • KOffice Homepage / Security
 

XPDF Integer Overflow

$Date: 2004-12-30 11:12:01 +0100 (Thu, 30 Dec 2004) $

KOffice 1.3 (including betas) to 1.3.4 have an integer overflow vulnerability in KWord's PDF import filter.

References

  • the corresponding security advisiory for KDE.

How to fix source code?

KOffice 1.3 (including betas) to 1.3.3

A patch for the source package is available. (Patch updated the 2004-10-30 16:15 UTC)
(MD5 sum: b681bc6746c31f3410f20315b0075b25 xpdf_security_integer_overflow.diff )

The patch applies to the directory koffice/filters/kword/pdf/xpdf/xpdf .

To patch, do: (please adjust paths)
cd koffice/filters/kword/pdf/xpdf/xpdf
patch -p0 < xpdf_security_integer_overflow.diff

KOffice 1.3.4

KOffice 1.3.4 has an integer overflow vulnerability fix in KWord's PDF import filter which is weak against compiler optimization.

A patch for the source package is available.

The patch applies to the directory koffice/filters/kword/pdf/xpdf/xpdf .

To patch, do: (please adjust paths)
cd koffice/filters/kword/pdf/xpdf/xpdf
patch -p0 < koffice_1_3_4_xpdf_security_integer_overflow.diff

See Also

  • The second xpdf integer overflow vulnerability

Inform

Skip menu "Inform"
  • Home
  • KDE Home
  • News
  • Information
  • FAQ
  • Add-ons for KOffice
  • People
  • Mailing Lists
  • Support KOffice

Latest Releases

Skip menu "Latest Releases"
  • KOffice 1.6.3
  • KOffice 2.0-alpha-9
  • Security
    • KDE Security

KOffice Applications

Skip menu "KOffice Applications"
  • KOffice Workspace
  • KWord
  • KSpread
  • KPresenter
  • Kexi
  • Kivio
  • Karbon14
  • Krita
  • KPlato
  • KChart
  • KFormula
  • Kugar

Documentation

Skip menu "Documentation"
  • KOffice 1.6.3
  • Supported File Formats

Competitions

Skip menu "Competitions"
  • Recent Competitions
  • KOffice2 Design

Download

Skip menu "Download"
  • Download

Development

Skip menu "Development"
  • Developer Resources
  • Get Involved
  • KOffice Sprints

Global navigation links

  • KDE Home
  • KDE Accessibility Home
  • Description of Access Keys
  • Back to content
  • Back to menu
Maintained by koffice.org Web Team
KDE® and the K Desktop Environment® logo are registered trademarks of KDE e.V. | Legal