Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11527
HistoryJan 15, 2019 - 9:03 a.m.

Privilege Escalation

2019-01-1509:03:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.0004 Low

EPSS

Percentile

10.1%

libXfont.so is vulnerable to privilege escalation. An integer overflow bug in FontFileAddEntry and lexAlias allows a local attacker to gain privileges by adding a directory with a large fonts.dir or fonts.alias file to the font path, which results in a heap-based buffer overflow.