CVE Vulnerabilities

CVE-2016-2795

Published: Mar 13, 2016 | Modified: Dec 27, 2019
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

The graphite2::FileFace::get_table_fn function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font.

Affected Software

Name Vendor Start Version End Version
Leap Opensuse 42.1 (including) 42.1 (including)
Opensuse Opensuse 13.1 (including) 13.1 (including)
Opensuse Opensuse 13.2 (including) 13.2 (including)
Linux_enterprise Suse 12.0 (including) 12.0 (including)
Red Hat Enterprise Linux 5 RedHat firefox-0:38.7.0-1.el5_11 *
Red Hat Enterprise Linux 5 RedHat thunderbird-0:38.7.0-1.el5_11 *
Red Hat Enterprise Linux 6 RedHat firefox-0:38.7.0-1.el6_7 *
Red Hat Enterprise Linux 6 RedHat thunderbird-0:38.7.0-1.el6_7 *
Red Hat Enterprise Linux 7 RedHat firefox-0:38.7.0-1.el7_2 *
Red Hat Enterprise Linux 7 RedHat thunderbird-0:38.7.0-1.el7_2 *
Firefox Ubuntu precise *
Firefox Ubuntu trusty *
Firefox Ubuntu upstream *
Firefox Ubuntu wily *
Graphite2 Ubuntu devel *
Graphite2 Ubuntu precise *
Graphite2 Ubuntu trusty *
Graphite2 Ubuntu upstream *
Graphite2 Ubuntu vivid/stable-phone-overlay *
Graphite2 Ubuntu wily *
Graphite2 Ubuntu xenial *
Graphite2 Ubuntu yakkety *
Graphite2 Ubuntu zesty *
Thunderbird Ubuntu devel *
Thunderbird Ubuntu precise *
Thunderbird Ubuntu trusty *
Thunderbird Ubuntu upstream *
Thunderbird Ubuntu wily *
Thunderbird Ubuntu xenial *
Thunderbird Ubuntu yakkety *
Thunderbird Ubuntu zesty *

References