Vulnerabilities > CVE-2003-0581 - Unspecified vulnerability in Xfstt 1.2.1/1.4

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
xfstt
nessus

Summary

X Fontserver for Truetype fonts (xfstt) 1.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a (1) FS_QueryXExtents8 or (2) FS_QueryXBitmaps8 packet, and possibly other types of packets, with a large num_ranges value, which causes an out-of-bounds array access.

Vulnerable Configurations

Part Description Count
Application
Xfstt
2

Nessus

  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-360.NASL
    descriptionxfstt, a TrueType font server for the X window system was found to contain two classes of vulnerabilities : CAN-2003-0581: a remote attacker could send requests crafted to trigger any of several buffer overruns, causing a denial of service or possibly executing arbitrary code on the server with the privileges of the
    last seen2020-06-01
    modified2020-06-02
    plugin id15197
    published2004-09-29
    reporterThis script is Copyright (C) 2004-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/15197
    titleDebian DSA-360-1 : xfstt - several vulnerabilities
  • NASL familyGain a shell remotely
    NASL idXFSTT_OVERFLOW.NASL
    descriptionThe remote X Font Service for TrueType (xfstt) is vulnerable to a remote buffer overflow which may lead to code execution as root or a denial of service.
    last seen2020-06-01
    modified2020-06-02
    plugin id11814
    published2003-08-01
    reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/11814
    titleTrueType Font Server for X11 (xfstt) Malformed Packet Remote Overflow