CVE-2014-0210
15.05.2014, 14:55
Multiple buffer overflows in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs protocol reply to the (1) _fs_recv_conn_setup, (2) fs_read_open_font, (3) fs_read_query_info, (4) fs_read_extent_info, (5) fs_read_glyphs, (6) fs_read_list, or (7) fs_read_list_info function.Enginsight
| Vendor | Product | Version |
|---|---|---|
| x | libxfont | 𝑥 ≤ 1.4.7 |
| x | libxfont | 1.2.3 |
| x | libxfont | 1.2.4 |
| x | libxfont | 1.2.5 |
| x | libxfont | 1.2.6 |
| x | libxfont | 1.2.7 |
| x | libxfont | 1.2.8 |
| x | libxfont | 1.2.9 |
| x | libxfont | 1.3.0 |
| x | libxfont | 1.3.1 |
| x | libxfont | 1.3.2 |
| x | libxfont | 1.3.3 |
| x | libxfont | 1.3.4 |
| x | libxfont | 1.4.0 |
| x | libxfont | 1.4.1 |
| x | libxfont | 1.4.2 |
| x | libxfont | 1.4.3 |
| x | libxfont | 1.4.4 |
| x | libxfont | 1.4.5 |
| x | libxfont | 1.4.6 |
| x | libxfont | 1.4.99 |
| canonical | ubuntu_linux | 10.04 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 12.10 |
| canonical | ubuntu_linux | 13.10 |
| canonical | ubuntu_linux | 14.04 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References