8.8
CVSSv3

CVE-2016-1522

Published: 13/02/2016 Updated: 01/07/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox prior to 43.0 and Firefox ESR 38.x prior to 38.6.1, does not consider recursive load calls during a size check, which allows remote malicious users to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via a crafted Graphite smart font.

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 22

fedoraproject fedora 23

mozilla firefox esr 38.5.0

mozilla firefox esr 38.4.0

mozilla firefox esr 38.0.5

mozilla firefox esr 38.0.1

mozilla thunderbird

mozilla firefox esr 38.6.0

mozilla firefox esr 38.2.1

mozilla firefox esr 38.1.1

mozilla firefox esr 38.1.0

mozilla firefox esr 38.0

mozilla firefox esr 38.5.2

mozilla firefox esr 38.5.1

mozilla firefox esr 38.3.0

mozilla firefox esr 38.2.0

debian debian linux 8.0

debian debian linux 7.0

sil graphite2 1.2.4

Vendor Advisories

graphite2 could be made to crash or run programs as your login if it opened a specially crafted font ...
Multiple vulnerabilities have been found in the Graphite font rendering engine which might result in denial of service or the execution of arbitrary code if a malformed font file is processed For the oldstable distribution (wheezy), these problems have been fixed in version 135-1~deb7u1 For the stable distribution (jessie), these problems have ...
Several vulnerabilities were discovered in Graphite2 An attacker able to trick an unsuspecting user into opening specially crafted font files in an application using Graphite2 could exploit these flaws to cause the application to crash or, potentially, execute arbitrary code with the privileges of the application ...
A vulnerability has been discovered in Graphite2 An attacker able to trick an unsuspecting user into opening specially crafted font files in an application using Graphite2 could exploit these flaws to cause the application to crash or, potentially, execute arbitrary code with the privileges of the application ...