Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2018.0037
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2018-0037)
Zusammenfassung:The remote host is missing an update for the 'fontforge' package(s) announced via the MGASA-2018-0037 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'fontforge' package(s) announced via the MGASA-2018-0037 advisory.

Vulnerability Insight:
It was discovered that FontForge, a font editor, did not correctly
validate its input. An attacker could use this flaw by tricking a user
into opening a maliciously crafted OpenType font file, thus causing a
denial-of-service via application crash, or execution of arbitrary code
(CVE-2017-11568, CVE-2017-11569, CVE-2017-11571, CVE-2017-11572,
CVE-2017-11574, CVE-2017-11575, CVE-2017-11576, CVE-2017-11577).

Affected Software/OS:
'fontforge' package(s) on Mageia 5, Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-11568
Debian Security Information: DSA-3958 (Google Search)
http://www.debian.org/security/2017/dsa-3958
https://github.com/fontforge/fontforge/issues/3089
Common Vulnerability Exposure (CVE) ID: CVE-2017-11569
https://github.com/fontforge/fontforge/issues/3093
Common Vulnerability Exposure (CVE) ID: CVE-2017-11571
https://github.com/fontforge/fontforge/issues/3087
Common Vulnerability Exposure (CVE) ID: CVE-2017-11572
https://github.com/fontforge/fontforge/issues/3092
Common Vulnerability Exposure (CVE) ID: CVE-2017-11574
https://github.com/fontforge/fontforge/issues/3090
Common Vulnerability Exposure (CVE) ID: CVE-2017-11575
https://github.com/fontforge/fontforge/issues/3096
Common Vulnerability Exposure (CVE) ID: CVE-2017-11576
https://github.com/fontforge/fontforge/issues/3091
Common Vulnerability Exposure (CVE) ID: CVE-2017-11577
https://github.com/fontforge/fontforge/issues/3088
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.