Ubuntu Security Notice USN-163-1 – xpdf and kpdf does not sufficiently verify the validity of the loca table in PDF files, a table that contains glyph description information for embedded TrueType fonts.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/39189/USN-163-1.txt
Source: https://packetstormsecurity.com/files/39189/Ubuntu-Security-Notice-163-1.html