Vulnerabilities > X ORG > Libxfont > Low

DATE CVE VULNERABILITY TITLE RISK
2017-10-11 CVE-2017-13720 Out-of-bounds Read vulnerability in X.Org Libxfont 2.0.0/2.0.1
In the PatternMatch function in fontfile/fontdir.c in libXfont through 1.5.2 and 2.x before 2.0.2, an attacker with access to an X connection can cause a buffer over-read during pattern matching of fonts, leading to information disclosure or a crash (denial of service).
local
low complexity
x-org CWE-125
3.6
2017-10-11 CVE-2017-13722 Out-of-bounds Read vulnerability in X.Org Libxfont 2.0.0/2.0.1
In the pcfGetProperties function in bitmap/pcfread.c in libXfont through 1.5.2 and 2.x before 2.0.2, a missing boundary check (for PCF files) could be used by local attackers authenticated to an Xserver for a buffer over-read, for information disclosure or a crash of the X server.
local
low complexity
x-org CWE-125
3.6
2007-04-06 CVE-2007-1352 Local Integer Overflow vulnerability in X.Org LibXFont
Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.
3.8