• Mike DePaulo's avatar
    CVE-2014-0210: unvalidated length fields in fs_read_list() from… · ef439da3
    Mike DePaulo authored
    CVE-2014-0210: unvalidated length fields in fs_read_list() from xorg/lib/libXfont commit 5fa73ac18474be3032ee7af9c6e29deab163ea39
    
    fs_read_list() parses a reply from the font server.  The reply
    contains a list of strings with embedded length fields, none of
    which are validated. This can cause out of bound reads when looping
    over the strings in the reply.
    ef439da3
Name
Last commit
Last update
..
Speedo Loading commit data...
Type1 Loading commit data...
bitmap Loading commit data...
builtins Loading commit data...
fc Loading commit data...
fontcache Loading commit data...
fontfile Loading commit data...
include Loading commit data...
stubs Loading commit data...
util Loading commit data...
Imakefile Loading commit data...