Lucene search

K
ubuntuUbuntuUSN-2536-1
HistoryMar 18, 2015 - 12:00 a.m.

libXfont vulnerabilities

2015-03-1800:00:00
ubuntu.com
34

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

5

Confidence

High

EPSS

0.015

Percentile

86.9%

Releases

  • Ubuntu 14.10
  • Ubuntu 14.04 ESM
  • Ubuntu 12.04
  • Ubuntu 10.04

Packages

  • libxfont - X11 font rasterisation library

Details

Ilja van Sprundel, Alan Coopersmith, and William Robinet discovered that
libXfont incorrectly handled malformed bdf fonts. A local attacker could
use this issue to cause libXfont to crash, or possibly execute arbitrary
code in order to gain privileges.

OSVersionArchitecturePackageVersionFilename
Ubuntu14.10noarchlibxfont1< 1:1.4.99.901-1ubuntu0.1UNKNOWN
Ubuntu14.10noarchlibxfont-dev< 1:1.4.99.901-1ubuntu0.1UNKNOWN
Ubuntu14.10noarchlibxfont1-dbg< 1:1.4.99.901-1ubuntu0.1UNKNOWN
Ubuntu14.10noarchlibxfont1-udeb< 1:1.4.99.901-1ubuntu0.1UNKNOWN
Ubuntu14.04noarchlibxfont1< 1:1.4.7-1ubuntu0.2UNKNOWN
Ubuntu14.04noarchlibxfont-dev< 1:1.4.7-1ubuntu0.2UNKNOWN
Ubuntu14.04noarchlibxfont1-dbg< 1:1.4.7-1ubuntu0.2UNKNOWN
Ubuntu14.04noarchlibxfont1-udeb< 1:1.4.7-1ubuntu0.2UNKNOWN
Ubuntu12.04noarchlibxfont1< 1:1.4.4-1ubuntu0.3UNKNOWN
Ubuntu12.04noarchlibxfont-dev< 1:1.4.4-1ubuntu0.3UNKNOWN
Rows per page:
1-10 of 151

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

5

Confidence

High

EPSS

0.015

Percentile

86.9%