Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3193

Опубликовано: 16 июн. 2012
Источник: ubuntu
Приоритет: low
CVSS2: 9.3

Описание

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.

РелизСтатусПримечание
devel

not-affected

hardy

ignored

end of life
lucid

released

4:4.6.2-0ubuntu5.4
maverick

ignored

end of life
natty

released

4:4.7.2-0ubuntu6.4
oneiric

not-affected

4:4.7.4-0ubuntu8.1
precise

not-affected

upstream

released

4.7.4

Показывать по

9.3 Critical

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.

nvd
около 13 лет назад

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.

debian
около 13 лет назад

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the H ...

github
около 3 лет назад

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.

oracle-oval
почти 14 лет назад

ELSA-2011-1326: pango security update (MODERATE)

9.3 Critical

CVSS2