FontForge 20161012 is vulnerable to a buffer over-read in getsid (parsettf.c) resulting in DoS or code execution via a crafted otf file.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge-common" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge-dbg" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge-dbgsym" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge-nox" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "fontforge-nox-dbgsym" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libfontforge-dev" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libfontforge-dev-dbgsym" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libfontforge1" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libfontforge1-dbgsym" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libgdraw4" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "libgdraw4-dbgsym" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "python-fontforge" }, { "binary_version": "20120731.b-5ubuntu0.1", "binary_name": "python-fontforge-dbgsym" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge-common" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge-dbg" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge-dbgsym" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge-nox" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "fontforge-nox-dbgsym" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libfontforge-dev" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libfontforge-dev-dbgsym" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libfontforge1" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libfontforge1-dbgsym" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libgdraw4" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "libgdraw4-dbgsym" }, { "binary_version": "20120731.b-7.1ubuntu0.1", "binary_name": "python-fontforge" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "1:20170731~dfsg-1", "binary_name": "fontforge" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "fontforge-common" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "fontforge-dbg" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "fontforge-doc" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "fontforge-nox" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "libfontforge-dev" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "libfontforge2" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "libgdraw5" }, { "binary_version": "1:20170731~dfsg-1", "binary_name": "python-fontforge" } ] }