CVE Vulnerabilities

CVE-2007-1352

Published: Apr 06, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.8 LOW
AV:A/AC:M/Au:S/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.

Affected Software

Name Vendor Start Version End Version
Mandrake_linux Mandrakesoft 9.1 (including) 9.1 (including)
Mandrake_linux Mandrakesoft 9.2 (including) 9.2 (including)
Mandrake_linux Mandrakesoft 10.0 (including) 10.0 (including)
Mandrake_linux Mandrakesoft 2007 (including) 2007 (including)
Mandrake_linux_corporate_server Mandrakesoft 3.0 (including) 3.0 (including)
Mandrake_linux_corporate_server Mandrakesoft 4.0 (including) 4.0 (including)
Red Hat Enterprise Linux 2.1 RedHat XFree86-0:4.1.0-82.EL *
Red Hat Enterprise Linux 3 RedHat XFree86-0:4.3.0-120.EL *
Red Hat Enterprise Linux 4 RedHat xorg-x11-0:6.8.2-1.EL.13.37.7 *
Red Hat Enterprise Linux 5 RedHat libXfont-0:1.2.2-1.0.2.el5 *
Libxfont Ubuntu dapper *
Libxfont Ubuntu devel *
Libxfont Ubuntu edgy *
Libxfont Ubuntu feisty *

References