CVE-2007-1351: Integer Overflow
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1351?
CVE-2007-1351 is considered a critical vulnerability due to its potential to allow remote authenticated users to execute arbitrary code.
How do I fix CVE-2007-1351?
To fix CVE-2007-1351, update libXfont and freetype to a version later than 1.2.2 and 2.3.2 respectively.
Who is affected by CVE-2007-1351?
CVE-2007-1351 affects various versions of Ubuntu Linux, Red Hat Enterprise Linux, OpenBSD, and X.Org libXfont among others.
What types of vulnerabilities does CVE-2007-1351 represent?
CVE-2007-1351 represents an integer overflow vulnerability leading to a heap overflow.
Can CVE-2007-1351 be exploited remotely?
Yes, CVE-2007-1351 can be exploited remotely by authenticated users through the use of crafted BDF fonts.