Red Hat Bugzilla – Bug 1472223
CVE-2017-7776 graphite2: heap-buffer-overflow read "graphite2::Silf::getClassGlyph"
Last modified: 2017-07-21 10:35:31 EDT
An out of bounds read flaw related to "graphite2::Silf::getClassGlyph" has been reported in graphite2. An attacker could possibly exploit this flaw to disclose potentially sensitive memory or cause an application crash.
Acknowledgments: Name: the Mozilla project Upstream: Holger Fuhrmannek, Tyson Smith
External References: https://www.mozilla.org/en-US/security/advisories/mfsa2017-16/#CVE-2017-7778 https://sourceforge.net/p/silgraphite/mailman/message/35824024/
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2017:1793 https://access.redhat.com/errata/RHSA-2017:1793