Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2018.0037
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2018-0037)
Resumen:The remote host is missing an update for the 'fontforge' package(s) announced via the MGASA-2018-0037 advisory.
Descripción:Summary:
The remote host is missing an update for the 'fontforge' package(s) announced via the MGASA-2018-0037 advisory.

Vulnerability Insight:
It was discovered that FontForge, a font editor, did not correctly
validate its input. An attacker could use this flaw by tricking a user
into opening a maliciously crafted OpenType font file, thus causing a
denial-of-service via application crash, or execution of arbitrary code
(CVE-2017-11568, CVE-2017-11569, CVE-2017-11571, CVE-2017-11572,
CVE-2017-11574, CVE-2017-11575, CVE-2017-11576, CVE-2017-11577).

Affected Software/OS:
'fontforge' package(s) on Mageia 5, Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2017-11568
Debian Security Information: DSA-3958 (Google Search)
http://www.debian.org/security/2017/dsa-3958
https://github.com/fontforge/fontforge/issues/3089
Common Vulnerability Exposure (CVE) ID: CVE-2017-11569
https://github.com/fontforge/fontforge/issues/3093
Common Vulnerability Exposure (CVE) ID: CVE-2017-11571
https://github.com/fontforge/fontforge/issues/3087
Common Vulnerability Exposure (CVE) ID: CVE-2017-11572
https://github.com/fontforge/fontforge/issues/3092
Common Vulnerability Exposure (CVE) ID: CVE-2017-11574
https://github.com/fontforge/fontforge/issues/3090
Common Vulnerability Exposure (CVE) ID: CVE-2017-11575
https://github.com/fontforge/fontforge/issues/3096
Common Vulnerability Exposure (CVE) ID: CVE-2017-11576
https://github.com/fontforge/fontforge/issues/3091
Common Vulnerability Exposure (CVE) ID: CVE-2017-11577
https://github.com/fontforge/fontforge/issues/3088
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.