Search CVE reports
1 – 8 of 8 results
fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) indexes the per-character encoding[] array using num_chars from the FS_QueryXBitmaps16 reply, but that array was allocated with a size derived from num_extents...
2 affected packages
libxfont, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| libxfont2 | Not in release | Not in release | Not in release | — | — |
fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) copies each glyph's bitmap into a single buffer. Existing checks validates only that the source slice (position, length) lies within the source bitmap buffer....
2 affected packages
libxfont, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| libxfont2 | Not in release | Not in release | Not in release | — | — |
Some fixes available 7 of 9
A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to...
2 affected packages
libxfont, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | Fixed | Fixed | Fixed | Fixed | Fixed |
| libxfont2 | Not in release | Not in release | Not in release | — | — |
Some fixes available 7 of 9
A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8 allows attackers authenticated as X client to execute code within the X server.
2 affected packages
libxfont, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | Fixed | Fixed | Fixed | Fixed | Fixed |
| libxfont2 | Not in release | Not in release | Not in release | — | — |
Some fixes available 7 of 9
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
2 affected packages
libxfont, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | Fixed | Fixed | Fixed | Fixed | Fixed |
| libxfont2 | Not in release | Not in release | Not in release | — | — |
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
3 affected packages
libxfont, libxfont1, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | — | — | — | — | — |
| libxfont1 | — | — | — | — | — |
| libxfont2 | — | — | — | — | — |
In the pcfGetProperties function in bitmap/pcfread.c in libXfont through 1.5.2 and 2.x before 2.0.2, a missing boundary check (for PCF files) could be used by local attackers authenticated to an Xserver for a buffer over-read, for...
3 affected packages
libxfont, libxfont1, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | — | — | — | — | — |
| libxfont1 | — | — | — | — | — |
| libxfont2 | — | — | — | — | — |
In the PatternMatch function in fontfile/fontdir.c in libXfont through 1.5.2 and 2.x before 2.0.2, an attacker with access to an X connection can cause a buffer over-read during pattern matching of fonts, leading to information...
3 affected packages
libxfont, libxfont1, libxfont2
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libxfont | — | — | — | — | — |
| libxfont1 | — | — | — | — | — |
| libxfont2 | — | — | — | — | — |