Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted font file.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 01:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://cgit.freedesktop.org/harfbuzz.old/commit/?id=81c8ef785b079980ad5b46be4fe7c7bf156dbf65 - Patch, Third Party Advisory | |
References | () http://cgit.freedesktop.org/harfbuzz/commit/src/harfbuzz-gpos.c?id=da2c52abcd75d46929b34cad55c4fb2c8892bc08 - Patch, Third Party Advisory | |
References | () http://git.gnome.org/browse/pango/commit/pango/opentype/harfbuzz-gpos.c?id=a7a715480db66148b1f487528887508a7991dcd0 - Patch, Vendor Advisory | |
References | () http://lists.opensuse.org/opensuse-updates/2011-10/msg00007.html - Mailing List, Third Party Advisory | |
References | () http://lists.opensuse.org/opensuse-updates/2011-10/msg00008.html - Mailing List, Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1323.html - Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1324.html - Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1325.html - Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1326.html - Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1327.html - Third Party Advisory | |
References | () http://rhn.redhat.com/errata/RHSA-2011-1328.html - Third Party Advisory | |
References | () http://secunia.com/advisories/41537 - Third Party Advisory | |
References | () http://secunia.com/advisories/46117 - Third Party Advisory | |
References | () http://secunia.com/advisories/46118 - Third Party Advisory | |
References | () http://secunia.com/advisories/46119 - Third Party Advisory | |
References | () http://secunia.com/advisories/46128 - Third Party Advisory | |
References | () http://secunia.com/advisories/46371 - Third Party Advisory | |
References | () http://secunia.com/advisories/46410 - Third Party Advisory | |
References | () http://secunia.com/advisories/49895 - Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2011/08/22/6 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2011/08/24/8 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2011/08/25/1 - Mailing List, Third Party Advisory | |
References | () http://www.osvdb.org/75652 - Broken Link | |
References | () http://www.securityfocus.com/bid/49723 - Third Party Advisory, VDB Entry | |
References | () http://www.ubuntu.com/usn/USN-1504-1 - Third Party Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/69991 - Third Party Advisory, VDB Entry | |
References | () https://hermes.opensuse.org/messages/12056605 - Broken Link | |
References | () https://qt.gitorious.org/qt/qt/commit/9ae6f2f9a57f0c3096d5785913e437953fa6775c - Broken Link |
Information
Published : 2012-06-16 00:55
Updated : 2024-11-21 01:29
NVD link : CVE-2011-3193
Mitre link : CVE-2011-3193
CVE.ORG link : CVE-2011-3193
JSON object : View
Products Affected
opensuse
- opensuse
redhat
- enterprise_linux_server
- enterprise_linux_desktop
- enterprise_linux_eus
- enterprise_linux_workstation
canonical
- ubuntu_linux
qt
- qt
gnome
- pango
CWE
CWE-787
Out-of-bounds Write