Bug 1096601 (CVE-2014-0211)
Summary: | CVE-2014-0211 libXfont: integer overflows calculating memory needs for xfs replies | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Huzaifa S. Sidhpurwala <huzaifas> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED ERRATA | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | carnil, chazlett, jkurik, jrusnack, kem, security-response-team |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | libXfont 1.4.8, libXfont 1.4.99.901 (1.5.0rc1) | Doc Type: | Bug Fix |
Doc Text: |
Multiple out-of-bounds write flaws were found in the way libXfont parsed replies received from an X.org font server. A malicious X.org server could cause an X client to crash or, possibly, execute arbitrary code with the privileges of the X.Org server.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2014-11-25 07:47:09 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1097397, 1163601, 1163602, 1163603, 1163604, 1165521 | ||
Bug Blocks: | 1096603 |
Description
Huzaifa S. Sidhpurwala
2014-05-12 06:40:14 UTC
Upstream commits: http://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=a42f707f8a62973f5e8bbcd08afb10a79e9cee33 http://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=c578408c1fd4db09e4e3173f8a9e65c81cc187c1 http://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=0f1a5d372c143f91a602bdf10c917d7eabaee09b External Reference: http://lists.x.org/archives/xorg-announce/2014-May/002431.html Created libXfont tracking bugs for this issue: Affects: fedora-all [bug 1097397] Statement: (none) libXfont-1.4.8-1.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report. libXfont-1.4.8-1.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report. This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7 Via RHSA-2014:1870 https://rhn.redhat.com/errata/RHSA-2014-1870.html IssueDescription: Multiple out-of-bounds write flaws were found in the way libXfont parsed replies received from an X.org font server. A malicious X.org server could cause an X client to crash or, possibly, execute arbitrary code with the privileges of the X.Org server. This issue has been addressed in the following products: Red Hat Enterprise Linux 5 Via RHSA-2014:1893 https://rhn.redhat.com/errata/RHSA-2014-1893.html |