Advisories ยป MGASA-2018-0052

Updated swftools packages fix security vulnerability

Publication date: 03 Jan 2018
Modification date: 03 Jan 2018
Type: security
Affected Mageia releases : 5 , 6
CVE: CVE-2017-7698

Description

A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows
remote attackers to execute arbitrary code via a malformed PDF document,
due to bundled code in Gfx.cc from Xpdf 3.02 (CVE-2017-7698).
                

References

SRPMS

6/core

5/core