Bugzilla – Full Text Bug Listing |
Summary: | VUL-1: CVE-2012-2142: xpdf: Insufficient sanitization of escape sequences in the error message | ||
---|---|---|---|
Product: | [Novell Products] SUSE Security Incidents | Reporter: | Alexander Bergmann <abergmann> |
Component: | Incidents | Assignee: | Peter Simons <peter.simons> |
Status: | CONFIRMED --- | QA Contact: | Security Team bot <security-team> |
Severity: | Minor | ||
Priority: | P4 - Low | CC: | abergmann, krahmer, mancha1, wolfgang.frisch |
Version: | unspecified | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Other | ||
URL: | https://smash.suse.de/issue/75044/ | ||
Whiteboard: | CVSSv2:RedHat:CVE-2012-2142:2.6:(AV:N/AC:H/Au:N/C:N/I:P/A:N) maint:planned:update CVSSv3.1:NVD:CVE-2012-2142:7.8:(AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H) | ||
Found By: | --- | Services Priority: | |
Business Priority: | Blocker: | --- | |
Marketing QA Status: | --- | IT Deployment: | --- |
Bug Depends on: | |||
Bug Blocks: | 1133493 | ||
Attachments: | CVE-2012-2142 patch |
Description
Alexander Bergmann
2013-08-12 15:50:26 UTC
The poppler issue is tracked in bug#834476. bugbot adjusting priority http://sourceforge.net/projects/miscellaneouspa/files/misc/xpdf-3.03-CVE-2012-2142.diff from https://bugzilla.redhat.com/show_bug.cgi?id=996052#c10 (In reply to comment #3) > http://sourceforge.net/projects/miscellaneouspa/files/misc/xpdf-3.03-CVE-2012-2142.diff > > from > > https://bugzilla.redhat.com/show_bug.cgi?id=996052#c10 I think you mean from https://bugzilla.redhat.com/show_bug.cgi?id=789936#c29 (In reply to comment #4) > > https://bugzilla.redhat.com/show_bug.cgi?id=996052#c10 > > I think you mean from https://bugzilla.redhat.com/show_bug.cgi?id=789936#c29 Exactly :-). Created attachment 803652 [details]
CVE-2012-2142 patch
Currently tracked as affected in: SUSE:SLE-11:Update SUSE:SLE-11-SP1:Update |