Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r49w-hq6h-2w8q

Опубликовано: 08 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

EPSS

Процентиль: 35%
0.00428
Низкий

8.5 High

CVSS3

Дефекты

CWE-122

Связанные уязвимости

CVSS3: 8.5
ubuntu
23 дня назад

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

CVSS3: 7.3
redhat
24 дня назад

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

CVSS3: 8.5
nvd
23 дня назад

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

CVSS3: 8.5
msrc
23 дня назад

libXfont2 PCF Font Parsing Heap Buffer Overflow

CVSS3: 8.5
debian
23 дня назад

A heap bufferflow in pcfReadFont() due to missing glyph bounds checkin ...

EPSS

Процентиль: 35%
0.00428
Низкий

8.5 High

CVSS3

Дефекты

CWE-122