Описание
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 1:2.0.1-3ubuntu1.1 |
| devel | released | 1:2.0.1-4ubuntu1 |
| esm-infra-legacy/trusty | released | 1:1.4.7-1ubuntu0.4 |
| esm-infra/xenial | released | 1:1.5.1-1ubuntu0.16.04.4 |
| precise/esm | DNE | |
| trusty | released | 1:1.4.7-1ubuntu0.4 |
| trusty/esm | released | 1:1.4.7-1ubuntu0.4 |
| upstream | released | 1.5.4,2.0.3 |
| xenial | released | 1:1.5.1-1ubuntu0.16.04.4 |
| zesty | released | 1:2.0.1-3ubuntu0.2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 1:1.5.2-4ubuntu1.1 |
| devel | released | 1:1.5.2-4ubuntu2 |
| esm-infra-legacy/trusty | DNE | |
| precise/esm | DNE | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | released | 1.5.4 |
| xenial | DNE | |
| zesty | released | 1:1.5.2-4ubuntu0.2 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| esm-infra/xenial | released | 1:2.0.1-3~ubuntu16.04.3 |
| precise/esm | DNE | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | released | 2.0.3 |
| xenial | released | 1:2.0.1-3~ubuntu16.04.3 |
| zesty | DNE |
Показывать по
Ссылки на источники
4.9 Medium
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker ...
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
Уязвимость библиотеки LibXfont, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю вызвать отказ в обслуживании
4.9 Medium
CVSS2
5.5 Medium
CVSS3