Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-19308

Опубликовано: 27 нояб. 2019
Источник: nvd
CVSS3: 5.5
CVSS2: 4.3
EPSS Низкий

Описание

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnome:gnome-font-viewer:3.34.0:*:*:*:*:*:*:*

EPSS

Процентиль: 52%
0.00286
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 6 лет назад

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).

CVSS3: 3.3
redhat
около 6 лет назад

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).

CVSS3: 5.5
debian
около 6 лет назад

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, ...

github
больше 3 лет назад

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).

EPSS

Процентиль: 52%
0.00286
Низкий

5.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476