Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2007-1351

Disclosure Date: April 06, 2007 (last updated October 04, 2023)
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
0
Attacker Value
Unknown

CVE-2005-0605

Disclosure Date: March 02, 2005 (last updated October 04, 2023)
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
0
Attacker Value
Unknown

CVE-2004-0914

Disclosure Date: January 10, 2005 (last updated October 04, 2023)
Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) memory leaks, which could allow remote attackers to obtain sensitive information, cause a denial of service (application crash), or execute arbitrary code via a certain XPM image file. NOTE: it is highly likely that this candidate will be SPLIT into other candidates in the future, per CVE's content decisions.
0
Attacker Value
Unknown

CVE-2004-0688

Disclosure Date: October 20, 2004 (last updated October 04, 2023)
Multiple integer overflows in (1) the xpmParseColors function in parse.c, (2) XpmCreateImageFromXpmImage, (3) CreateXImage, (4) ParsePixels, and (5) ParseAndPutPixels for libXpm before 6.8.1 may allow remote attackers to execute arbitrary code via a malformed XPM image file.
0
Attacker Value
Unknown

CVE-2004-0687

Disclosure Date: October 20, 2004 (last updated October 04, 2023)
Multiple stack-based buffer overflows in (1) xpmParseColors in parse.c, (2) ParseAndPutPixels in create.c, and (3) ParsePixels in parse.c for libXpm before 6.8.1 allow remote attackers to execute arbitrary code via a malformed XPM image file.
0
Attacker Value
Unknown

CVE-2004-0094

Disclosure Date: March 15, 2004 (last updated October 03, 2023)
Integer signedness errors in XFree86 4.1.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code when using the GLX extension and Direct Rendering Infrastructure (DRI).
0
Attacker Value
Unknown

CVE-2004-0093

Disclosure Date: March 15, 2004 (last updated October 03, 2023)
XFree86 4.1.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an out-of-bounds array index when using the GLX extension and Direct Rendering Infrastructure (DRI).
0
Attacker Value
Unknown

CVE-2004-0106

Disclosure Date: March 03, 2004 (last updated October 03, 2023)
Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set of vulnerabilities than CVE-2004-0083 and CVE-2004-0084.
0
Attacker Value
Unknown

CVE-2004-0083

Disclosure Date: March 03, 2004 (last updated October 03, 2023)
Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary code via a font alias file (font.alias) with a long token, a different vulnerability than CVE-2004-0084 and CVE-2004-0106.
0
Attacker Value
Unknown

CVE-2004-0084

Disclosure Date: March 03, 2004 (last updated October 03, 2023)
Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remote authenticated users to execute arbitrary code via a malformed entry in the font alias (font.alias) file, a different vulnerability than CVE-2004-0083 and CVE-2004-0106.
0