Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
AND |
|
Information
Published : 2007-04-05 18:19
Updated : 2018-10-16 09:38
NVD link : CVE-2007-1351
Mitre link : CVE-2007-1351
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
redhat
- enterprise_linux_desktop
- enterprise_linux
- linux_advanced_workstation
rpath
- rpath_linux
mandrakesoft
- mandrake_linux
- mandrake_multi_network_firewall
- mandrake_linux_corporate_server
ubuntu
- ubuntu_linux
xfree86_project
- x11r6
x.org
- libxfont
openbsd
- openbsd