Overview
About vulnerability
A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8 allows attackers authenticated as X client to execute code within the X server.Details
- Affected product:
- AlmaLinux 9.2 ESU , Amazon Linux 2 ELS , CentOS 7 ELS , Oracle Linux 7 ELS , TuxCare 9.6 ESU
- Affected packages:
- libXfont2 @ 2.0.3 (+4 more)