Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-2642

Опубликовано: 07 янв. 2011
Источник: debian
EPSS Средний

Описание

Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
evincefixed3.0.2-1package
evincefixed2.30.3-2+squeeze1squeezepackage
t1libfixed5.1.2-3.5package
t1libfixed5.1.2-3+lenny1lennypackage
t1libfixed5.1.2-3+squeeze1squeezepackage

EPSS

Процентиль: 94%
0.14991
Средний

Связанные уязвимости

ubuntu
больше 14 лет назад

Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

redhat
больше 14 лет назад

Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

nvd
больше 14 лет назад

Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

github
около 3 лет назад

Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font in conjunction with a DVI file that is processed by the thumbnailer.

oracle-oval
больше 14 лет назад

ELSA-2011-0009: evince security update (MODERATE)

EPSS

Процентиль: 94%
0.14991
Средний