CVE-2007-1351

Impact:
Important
Public Date:
2007-04-03
Bugzilla:
235265: CVE-2007-1351 Multiple font integer overflows (CVE-2007-1352)

The MITRE CVE dictionary describes this issue as:

Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.

Find out more about CVE-2007-1351 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 2.1 (XFree86) RHSA-2007:0125 2007-04-03
Red Hat Enterprise Linux 3 (XFree86) RHSA-2007:0125 2007-04-03
Red Hat Enterprise Linux 5 (freetype) RHSA-2007:0150 2007-04-16
Red Hat Enterprise Linux 4 (xorg-x11) RHSA-2007:0126 2007-04-03
Red Hat Enterprise Linux 4 (freetype) RHSA-2007:0150 2007-04-16
Red Hat Enterprise Linux 3 (freetype) RHSA-2007:0150 2007-04-16
Red Hat Enterprise Linux 5 (libXfont) RHSA-2007:0132 2007-04-03

Acknowledgements

Red Hat would like to thank iDefense for reporting this issue.

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.