Vulnerabilities (CVE)

Filtered by vendor Xfree86 Project Subscribe
Filtered by product Xfree86 X
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-3740 2 X.org, Xfree86 Project 2 X.org, Xfree86 X 2023-12-10 7.2 HIGH N/A
Integer overflow in the scan_cidfont function in X.Org 6.8.2 and XFree86 X server allows local users to execute arbitrary code via crafted (1) CMap and (2) CIDFont font data with modified item counts in the (a) begincodespacerange, (b) cidrange, and (c) notdefrange sections.
CVE-2006-3739 2 X.org, Xfree86 Project 2 X.org, Xfree86 X 2023-12-10 7.2 HIGH N/A
Integer overflow in the CIDAFM function in X.Org 6.8.2 and XFree86 X server allows local users to execute arbitrary code via crafted Adobe Font Metrics (AFM) files with a modified number of character metrics (StartCharMetrics), which leads to a heap-based buffer overflow.