In libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation, which may allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .ttf file.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Graphite2 | Sil | 1.3.11 (including) | 1.3.11 (including) |
Graphite2 | Ubuntu | artful | * |
Graphite2 | Ubuntu | esm-infra-legacy/trusty | * |
Graphite2 | Ubuntu | esm-infra/xenial | * |
Graphite2 | Ubuntu | trusty | * |
Graphite2 | Ubuntu | trusty/esm | * |
Graphite2 | Ubuntu | upstream | * |
Graphite2 | Ubuntu | xenial | * |