Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in FontForge 20100501 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long CHARSET_REGISTRY header in a BDF font file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Alexej_Kryukov FontForge栈缓冲区溢出漏洞
Vulnerability Description
FontForge是一款开源的支持多种语言的字体编辑工具。 FontForge 20100501版本中存在基于栈的缓冲区溢出漏洞。远程攻击者可以借助BDF字体文件中的超长CHARSET_REGISTRY头导致拒绝服务(应用程序崩溃)或者可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A