Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-0211

Опубликовано: 13 мая 2014
Источник: redhat
CVSS2: 4.3

Описание

Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs reply, which triggers a buffer overflow.

Multiple out-of-bounds write flaws were found in the way libXfont parsed replies received from an X.org font server. A malicious X.org server could cause an X client to crash or, possibly, execute arbitrary code with the privileges of the X.Org server.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-130->CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=1096601libXfont: integer overflows calculating memory needs for xfs replies

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs reply, which triggers a buffer overflow.

nvd
больше 11 лет назад

Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs reply, which triggers a buffer overflow.

debian
больше 11 лет назад

Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyph ...

github
больше 3 лет назад

Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs reply, which triggers a buffer overflow.

oracle-oval
почти 11 лет назад

ELSA-2014-1893: libXfont security update (IMPORTANT)

4.3 Medium

CVSS2