graphite2: multiple font parsing vulnerabilities (Mozilla MFSA 2016-37)
Published Mar 13, 2016
8.8
HIGHCVSS 3.0
EPSS 2.27%
Description
The graphite2::FileFace::get_table_fn function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font.
Affected products
No data.
Configuration 1
Configuration 3
- ≤ 44.0.2
- 38.0
- 38.0.1
- 38.0.5
- 38.1.0
- 38.1.1
- 38.2.0
- 38.2.1
- 38.3.0
- 38.4.0
- 38.5.0
- 38.5.1
- 38.6.0
- 38.6.1
No data.
Red Hat Enterprise Linux 5
firefox-0:38.7.0-1.el5_11
Fixed · RHSA-2016:0373
Red Hat Enterprise Linux 5
thunderbird-0:38.7.0-1.el5_11
Fixed · RHSA-2016:0460
Red Hat Enterprise Linux 6
firefox-0:38.7.0-1.el6_7
Fixed · RHSA-2016:0373
Red Hat Enterprise Linux 6
thunderbird-0:38.7.0-1.el6_7
Fixed · RHSA-2016:0460
Red Hat Enterprise Linux 7
firefox-0:38.7.0-1.el7_2
Fixed · RHSA-2016:0373
Red Hat Enterprise Linux 7
thunderbird-0:38.7.0-1.el7_2
Fixed · RHSA-2016:0460
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | firefox-0:38.7.0-1.el5_11 | Fixed | RHSA-2016:0373 |
| Red Hat Enterprise Linux 5 | thunderbird-0:38.7.0-1.el5_11 | Fixed | RHSA-2016:0460 |
| Red Hat Enterprise Linux 6 | firefox-0:38.7.0-1.el6_7 | Fixed | RHSA-2016:0373 |
| Red Hat Enterprise Linux 6 | thunderbird-0:38.7.0-1.el6_7 | Fixed | RHSA-2016:0460 |
| Red Hat Enterprise Linux 7 | firefox-0:38.7.0-1.el7_2 | Fixed | RHSA-2016:0373 |
| Red Hat Enterprise Linux 7 | thunderbird-0:38.7.0-1.el7_2 | Fixed | RHSA-2016:0460 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (32)
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00027.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00029.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00031.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00050.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00068.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00089.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00091.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00093.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00006.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00007.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00008.html vendor-advisoryx_refsource_SUSEThird Party Advisory
- http://www.debian.org/security/2016/dsa-3510 vendor-advisoryx_refsource_DEBIAN
- http://www.debian.org/security/2016/dsa-3515 vendor-advisoryx_refsource_DEBIAN
- http://www.debian.org/security/2016/dsa-3520 vendor-advisoryx_refsource_DEBIAN
- http://www.mozilla.org/security/announce/2016/mfsa2016-37.html x_refsource_CONFIRMVendor Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html x_refsource_CONFIRMThird Party Advisory
- http://www.securityfocus.com/bid/84222 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1035215 vdb-entryx_refsource_SECTRACK
- http://www.ubuntu.com/usn/USN-2917-1 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-2917-2 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-2917-3 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-2927-1 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-2934-1 vendor-advisoryx_refsource_UBUNTU
- https://access.redhat.com/security/cve/CVE-2016-2795 Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1243597 x_refsource_CONFIRMIssue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=1315795 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2016-3868 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2016-2795
- https://security.gentoo.org/glsa/201605-06 vendor-advisoryx_refsource_GENTOO
- https://security.gentoo.org/glsa/201701-63 vendor-advisoryx_refsource_GENTOO
- https://www.cve.org/CVERecord?id=CVE-2016-2795
- https://www.mozilla.org/security/announce/2016/mfsa2016-37.html
Change history (0)
No recorded changes yet.