REDHAT-BUG-1500690: Low severity red hat libxfont vulnerability
It was discovered that libXfont incorrectly handled certain patterns in PatternMatch. A local attacker could use this issue to cause libXfont to crash, resulting in a denial of service, or possibly obtain sensitive information.
Upstream patch:
https://cgit.freedesktop.org/xorg/lib/libXfont/commit/?id=d1e670a4a8704b8708e493ab6155589bcd570608
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1500690?
The severity of REDHAT-BUG-1500690 is classified as a denial of service vulnerability due to the potential for crashing libXfont.
How do I fix REDHAT-BUG-1500690?
To fix REDHAT-BUG-1500690, you should apply the upstream patches provided for updating libXfont to the latest version.
What type of attack does REDHAT-BUG-1500690 involve?
REDHAT-BUG-1500690 involves a local attacker exploiting incorrect pattern handling in libXfont leading to crashes.
What application is affected by REDHAT-BUG-1500690?
The application affected by REDHAT-BUG-1500690 is the X.Org libXfont library.
Can sensitive information be exposed due to REDHAT-BUG-1500690?
Yes, REDHAT-BUG-1500690 could potentially allow local attackers to obtain sensitive information.