<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="34246c4efba2dacfca1e33872cf42d89"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="sledp3-acroread-7266"
    timestamp="1291373942"
    engine="1.0">
  <yum:name>sledp3-acroread</yum:name>
  <summary lang="en">Security update for Acrobat Reader</summary>
  <description lang="en">
This update of acroread fixes two critical vulnerabilities. The first one 
in referenced by CVE-2010-3654 and exists in the integrated authplay 
component that may allow remote attackers to take control over a victims 
system.

(CVE-2010-3654: CVSS v2 Base Score: 6.8 (critical) 
(AV:N/AC:M/Au:N/C:P/I:P/A:P): Buffer Errors (CWE-119))

The other issue was disclosed on full-disclosure to demonstrate a denial of 
service attack, an extend of this attack to execute arbitrary code could be 
possible.

(CVE-2010-4091: CVSS v2 Base Score: 6.8 (critical) 
(AV:N/AC:M/Au:N/C:P/I:P/A:P): Buffer Errors (CWE-119))

Security Issue references:

    * CVE-2010-3654
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3654&gt;
    * CVE-2010-4091
      &lt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4091&gt;

</description>
  <yum:version ver="7266" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="acroread" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="acroread-cmaps" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="acroread-fonts-ja" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="acroread-fonts-ko" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="acroread-fonts-zh_CN" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
    <rpm:entry kind="atom" name="acroread-fonts-zh_TW" epoch="0" ver="9.4.1" rel="0.4.1" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread</name>
      <arch>i586</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">7743ddc3bd599709ee56c95c78e032257232ec85</checksum>
      <time file="1291374015" build="1291373942"/>
      <size package="59751868" installed="149523427" archive="149590544"/>
      <location xml:base="media://#1" href="suse/i586/acroread-9.4.1-0.4.1.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread-cmaps</name>
      <arch>noarch</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">808de6e7ff8b05d133f7a26a95d56dd36030dbbf</checksum>
      <time file="1291373915" build="1291373891"/>
      <size package="1952224" installed="6670684" archive="6691220"/>
      <location xml:base="media://#1" href="suse/noarch/acroread-cmaps-9.4.1-0.4.1.noarch.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread-cmaps" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread-cmaps"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread-fonts-ja</name>
      <arch>noarch</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">c6687495a785da76f5ddfd81e50a839c48e84d9f</checksum>
      <time file="1291373915" build="1291373891"/>
      <size package="5238250" installed="8136032" archive="8137216"/>
      <location xml:base="media://#1" href="suse/noarch/acroread-fonts-ja-9.4.1-0.4.1.noarch.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread-fonts-ja" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread-fonts-ja"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread-fonts-ko</name>
      <arch>noarch</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">27c9940823b9c1fe1d403967cfd0ac801d9a7f41</checksum>
      <time file="1291373915" build="1291373891"/>
      <size package="2868229" installed="3999568" archive="4000756"/>
      <location xml:base="media://#1" href="suse/noarch/acroread-fonts-ko-9.4.1-0.4.1.noarch.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread-fonts-ko" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread-fonts-ko"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread-fonts-zh_CN</name>
      <arch>noarch</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">040e80e0b9cfa5cb6e4e4d0d12f35fd43c5d525c</checksum>
      <time file="1291373917" build="1291373891"/>
      <size package="19969820" installed="27854632" archive="27855996"/>
      <location xml:base="media://#1" href="suse/noarch/acroread-fonts-zh_CN-9.4.1-0.4.1.noarch.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread-fonts-zh_CN" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread-fonts-zh_CN"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>acroread-fonts-zh_TW</name>
      <arch>noarch</arch>
      <version epoch="0" ver="9.4.1" rel="0.4.1"/>
      <checksum type="sha" pkgid="YES">447c1b38dd9a9a16f5b25a9cbd3cb1fe363a4579</checksum>
      <time file="1291373917" build="1291373891"/>
      <size package="5752527" installed="10150012" archive="10151196"/>
      <location xml:base="media://#1" href="suse/noarch/acroread-fonts-zh_TW-9.4.1-0.4.1.noarch.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="acroread-fonts-zh_TW" epoch="0" ver="9.4.1" rel="0.4.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="acroread-fonts-zh_TW"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
