The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF containing an escape sequence for a terminal emulator.
| Software | From | Fixed in |
|---|---|---|
| freedesktop / poppler | - | 0.21.4 |
| xpdfreader / xpdf | 3.02 | 3.02.x |
| redhat / enterprise_linux | 6.0 | 6.0.x |
| redhat / enterprise_linux | 5.0 | 5.0.x |
| opensuse / opensuse | 12.2 | 12.2.x |