Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-23319

Опубликовано: 17 фев. 2022
Источник: debian

Описание

A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to trigger a program crash via a specially crafted PCF font file. This crash affects the availability of the software and dependent downstream components.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pcf2bdffixed1.07-1package

Примечания

  • https://github.com/ganaware/pcf2bdf/issues/5

  • https://github.com/advisories/GHSA-p4gv-mjgc-3g68

  • Fixed by: https://github.com/ganaware/pcf2bdf/commit/3555aab4f3cfbec199141122177750a4351b8e79 (1.07)

  • Crash in CLI tool, no security impact

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 4 года назад

A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to trigger a program crash via a specially crafted PCF font file. This crash affects the availability of the software and dependent downstream components.

CVSS3: 5.5
nvd
почти 4 года назад

A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to trigger a program crash via a specially crafted PCF font file. This crash affects the availability of the software and dependent downstream components.

CVSS3: 5.5
github
почти 4 года назад

A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to trigger a program crash via a specially crafted PCF font file. This crash affects the availability of the software and dependent downstream components.