This xpdf security alert is now logged as 6904352.
The fix is to uprev poppler to 0.12.2 and poppler-data to 0.3.1
as the patches are upstreamed.
gheet at sling-osol:~/Documents/svn-gnome-2-28$ svn diff
Index: base-specs/poppler-data.spec
===================================================================
--- base-specs/poppler-data.spec (revision 19935)
+++ base-specs/poppler-data.spec (working copy)
@@ -14,7 +14,7 @@
Name: poppler-data
License: Adobe
Group: System/Libraries
-Version: 0.3.0
+Version: 0.3.1
Release: 1
Distribution: Java Desktop System
Vendor: Sun Microsystems, Inc.
Index: base-specs/libspectre.spec
===================================================================
--- base-specs/libspectre.spec (revision 19935)
+++ base-specs/libspectre.spec (working copy)
@@ -59,9 +59,9 @@
CPUS=1
fi
-#aclocal $ACLOCAL_FLAGS -I . -I m4
-#autoheader
-#automake -a -c -f
+aclocal $ACLOCAL_FLAGS -I .
+autoheader
+automake -a -c -f
autoconf
CFLAGS="$RPM_OPT_FLAGS" \
./configure --prefix=%{_prefix} \
Index: base-specs/poppler.spec
===================================================================
--- base-specs/poppler.spec (revision 19935)
+++ base-specs/poppler.spec (working copy)
@@ -14,7 +14,7 @@
Name: poppler
License: GPL
Group: System/Libraries
-Version: 0.12.0
+Version: 0.12.2
Release: 1
Distribution: Java Desktop System
Vendor: Sun Microsystems, Inc.