Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mandrake_linux | Mandrakesoft | 9.1 (including) | 9.1 (including) |
Mandrake_linux | Mandrakesoft | 9.2 (including) | 9.2 (including) |
Mandrake_linux | Mandrakesoft | 10.0 (including) | 10.0 (including) |
Mandrake_linux | Mandrakesoft | 2007 (including) | 2007 (including) |
Mandrake_linux_corporate_server | Mandrakesoft | 3.0 (including) | 3.0 (including) |
Mandrake_linux_corporate_server | Mandrakesoft | 4.0 (including) | 4.0 (including) |
Red Hat Enterprise Linux 2.1 | RedHat | XFree86-0:4.1.0-82.EL | * |
Red Hat Enterprise Linux 3 | RedHat | XFree86-0:4.3.0-120.EL | * |
Red Hat Enterprise Linux 4 | RedHat | xorg-x11-0:6.8.2-1.EL.13.37.7 | * |
Red Hat Enterprise Linux 5 | RedHat | libXfont-0:1.2.2-1.0.2.el5 | * |
Libxfont | Ubuntu | dapper | * |
Libxfont | Ubuntu | devel | * |
Libxfont | Ubuntu | edgy | * |
Libxfont | Ubuntu | feisty | * |