Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
AND |
|
History
21 Nov 2024, 00:28
Type | Values Removed | Values Added |
---|---|---|
References | () http://issues.foresightlinux.org/browse/FL-223 - | |
References | () http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=501 - Patch | |
References | () http://lists.apple.com/archives/Security-announce/2007/Nov/msg00003.html - | |
References | () http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html - | |
References | () http://lists.freedesktop.org/archives/xorg-announce/2007-April/000286.html - | |
References | () http://rhn.redhat.com/errata/RHSA-2007-0125.html - | |
References | () http://secunia.com/advisories/24741 - Vendor Advisory | |
References | () http://secunia.com/advisories/24745 - | |
References | () http://secunia.com/advisories/24756 - | |
References | () http://secunia.com/advisories/24758 - | |
References | () http://secunia.com/advisories/24765 - | |
References | () http://secunia.com/advisories/24768 - | |
References | () http://secunia.com/advisories/24770 - Vendor Advisory | |
References | () http://secunia.com/advisories/24771 - | |
References | () http://secunia.com/advisories/24772 - | |
References | () http://secunia.com/advisories/24776 - | |
References | () http://secunia.com/advisories/24791 - | |
References | () http://secunia.com/advisories/24885 - | |
References | () http://secunia.com/advisories/24889 - | |
References | () http://secunia.com/advisories/24921 - | |
References | () http://secunia.com/advisories/24996 - | |
References | () http://secunia.com/advisories/25004 - | |
References | () http://secunia.com/advisories/25006 - | |
References | () http://secunia.com/advisories/25096 - | |
References | () http://secunia.com/advisories/25195 - | |
References | () http://secunia.com/advisories/25216 - | |
References | () http://secunia.com/advisories/25305 - | |
References | () http://secunia.com/advisories/25495 - | |
References | () http://secunia.com/advisories/28333 - | |
References | () http://secunia.com/advisories/30161 - | |
References | () http://secunia.com/advisories/33937 - | |
References | () http://security.gentoo.org/glsa/glsa-200705-02.xml - | |
References | () http://security.gentoo.org/glsa/glsa-200705-10.xml - | |
References | () http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.626733 - | |
References | () http://sourceforge.net/project/shownotes.php?group_id=3157&release_id=498954 - | |
References | () http://sourceforge.net/project/shownotes.php?release_id=498954 - | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-26-102886-1 - | |
References | () http://support.apple.com/kb/HT3438 - | |
References | () http://support.avaya.com/elmodocs2/security/ASA-2007-178.htm - | |
References | () http://support.avaya.com/elmodocs2/security/ASA-2007-193.htm - | |
References | () http://www.debian.org/security/2007/dsa-1294 - | |
References | () http://www.debian.org/security/2008/dsa-1454 - | |
References | () http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2007:079 - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2007:080 - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2007:081 - | |
References | () http://www.novell.com/linux/security/advisories/2007_27_x.html - | |
References | () http://www.novell.com/linux/security/advisories/2007_6_sr.html - | |
References | () http://www.openbsd.org/errata39.html#021_xorg - | |
References | () http://www.openbsd.org/errata40.html#011_xorg - | |
References | () http://www.redhat.com/support/errata/RHSA-2007-0126.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2007-0132.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2007-0150.html - | |
References | () http://www.securityfocus.com/archive/1/464686/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/464816/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/23283 - Patch | |
References | () http://www.securityfocus.com/bid/23300 - | |
References | () http://www.securityfocus.com/bid/23402 - | |
References | () http://www.securitytracker.com/id?1017857 - | |
References | () http://www.trustix.org/errata/2007/0013/ - | |
References | () http://www.ubuntu.com/usn/usn-448-1 - | |
References | () http://www.vupen.com/english/advisories/2007/1217 - | |
References | () http://www.vupen.com/english/advisories/2007/1264 - | |
References | () http://www.vupen.com/english/advisories/2007/1548 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/33417 - | |
References | () https://issues.rpath.com/browse/RPL-1213 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11266 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1810 - |
Information
Published : 2007-04-06 01:19
Updated : 2024-11-21 00:28
NVD link : CVE-2007-1351
Mitre link : CVE-2007-1351
CVE.ORG link : CVE-2007-1351
JSON object : View
Products Affected
ubuntu
- ubuntu_linux
redhat
- enterprise_linux
- enterprise_linux_desktop
- linux_advanced_workstation
x.org
- libxfont
mandrakesoft
- mandrake_linux
- mandrake_multi_network_firewall
- mandrake_linux_corporate_server
openbsd
- openbsd
rpath
- rpath_linux
xfree86_project
- x11r6
CWE
CWE-189
Numeric Errors