Language Selection

English French German Italian Portuguese Spanish

Vulnerabilities in several PDF applications

Filed under
Security

Security holes in numerous PDF applications allow attackers to infect systems with malware.

Developers have also released a patch for the free Xpdf PDF reader that fixes four security problems in version 3.02. Exploits for a buffer overflow and a null pointer dereference hole are already in circulation. Problems in Xpdf usually cause a whole string of vulnerabilities in other applications that are based on its code, for example poppler, CUPS , Gpdf and KPDF.

In CUPS, the holes were reportedly closed in the official version 1.4.1.

Rest Here




More in Tux Machines

KDE Frameworks 5.30.0 Released for KDE Plasma 5 Users with Over 100 Changes

A new monthly release of the KDE Frameworks collection of over 70 add-on libraries for the Qt 5 GUI (Graphical User Interface) toolkit has been released recently for KDE Plasma 5 desktop environments. Read more

GoboLinux: A Linux Distribution With New Filesystem Hierarchy

GoboLinux introduces a lot of new ideas and designs into the Linux distributions world. Things like the filesystem hierarchy and the compiling scripts are amazing examples of what “modernizing” Linux distributions may really mean. However, the distribution wasn’t intended to be “user-friendly” or “ready-out-of-the-box”. Because of this, it can be said actually that the distribution manages to achieve its goals. An experianced user with a lot of time would definitely enjoy using and tweaking GoboLinux to fit his needs and learn in his way. Read more

Vivo V5 Plus review: The Android phone for stylish selfies

The days of shelling out a large sum of money to buy a smartphone that offers premium looks and performance are long gone. Manufacturers like OnePlus, Xiaomi, Oppo, Vivo, etc are offering superior performance at significantly lower prices. These manufacturers tend to add their own USP to a smartphone, which you might not always get on an Apple or Samsung. In Vivo’s case, it has launched a new mid-range premium device called V5 Plus with the highlight being a dual selfie camera. Vivo V5 Plus can be described as many things, but original. The phone borrows its design cues from multiple flagship devices, but clearly its major influence is the iPhone 7. But is this dual-selfie camera, iPhone-lookalike worth its price? Here’s our review Read more

Latest Linux For All Release Is Based on Ubuntu 16.04.1 LTS and Linux 4.9.5

GNU/Linux developer Arne Exton is informing us about the availability of a new stable build of his Linux For All (LFA) open-source computer operating system, versioned 170121. Based on the Ubuntu 16.04.1 LTS (Xenial Xerus) and Debian GNU/Linux 8 "Jessie" operating systems, Linux For All (LFA) Build 170121 appears to be a total rebuilt of the GNU/Linux distribution, having nothing in common with any of the previous releases. It now uses the newest Linux 4.9.5 kernel and latest package versions. Read more