Описание
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
| Релиз | Статус | Примечание | 
|---|---|---|
| devel | not-affected  | |
| hardy | ignored  | end of life | 
| lucid | released  | 4:4.6.2-0ubuntu5.4 | 
| maverick | ignored  | end of life | 
| natty | released  | 4:4.7.2-0ubuntu6.4 | 
| oneiric | not-affected  | 4:4.7.4-0ubuntu8.1 | 
| precise | not-affected  | |
| upstream | released  | 4.7.4 | 
Показывать по
EPSS
9.3 Critical
CVSS2
Связанные уязвимости
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the H ...
Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
EPSS
9.3 Critical
CVSS2