CVE-2017-16611
01.12.2017, 17:29
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
| Vendor | Product | Version |
|---|---|---|
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 17.04 |
| canonical | ubuntu_linux | 17.10 |
| x | libxfont | 1.0.0 ≤ 𝑥 < 1.5.4 |
| x | libxfont | 2.0.0 ≤ 𝑥 < 2.0.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| libxfont |
| ||||||||
| libxfont1 |
| ||||||||
| libxfont2 |
|
References