• Mike DePaulo's avatar
    CVE-2014-0210: unvalidated length fields in fs_read_list_info() from… · b65259bf
    Mike DePaulo authored
    CVE-2014-0210: unvalidated length fields in fs_read_list_info() from xorg/lib/libXfont commit d338f81df1e188eb16e1d6aeea7f4800f89c1218
    
    fs_read_list_info() parses a reply from the font server.  The reply
    contains a number of additional data items with embedded length or
    count fields, none of which are validated. This can cause out of
    bound reads when looping over these items in the reply.
    b65259bf
Name
Last commit
Last update
..
Speedo Loading commit data...
Type1 Loading commit data...
bitmap Loading commit data...
builtins Loading commit data...
fc Loading commit data...
fontcache Loading commit data...
fontfile Loading commit data...
include Loading commit data...
stubs Loading commit data...
util Loading commit data...
Imakefile Loading commit data...