CVE-2017-7777
- EPSS 0.52%
- Veröffentlicht 15.04.2019 12:31:08
- Zuletzt bearbeitet 21.11.2024 03:32:38
Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function.
CVE-2017-7776
- EPSS 0.48%
- Veröffentlicht 15.04.2019 12:31:08
- Zuletzt bearbeitet 21.11.2024 03:32:38
Heap-based Buffer Overflow read in Graphite2 library in Firefox before 54 in graphite2::Silf::getClassGlyph.
CVE-2017-7774
- EPSS 0.58%
- Veröffentlicht 15.04.2019 12:31:08
- Zuletzt bearbeitet 21.11.2024 03:32:38
Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.
CVE-2017-7773
- EPSS 0.48%
- Veröffentlicht 15.04.2019 12:31:08
- Zuletzt bearbeitet 21.11.2024 03:32:37
Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor.
CVE-2017-7771
- EPSS 0.44%
- Veröffentlicht 15.04.2019 12:31:08
- Zuletzt bearbeitet 21.11.2024 03:32:37
Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function.
CVE-2017-7772
- EPSS 0.48%
- Veröffentlicht 12.04.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:32:37
Heap-based Buffer Overflow in Graphite2 library in Firefox before 54 in lz4::decompress function.
CVE-2017-7778
- EPSS 1.12%
- Veröffentlicht 11.06.2018 21:29:08
- Zuletzt bearbeitet 21.11.2024 03:32:38
A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninitialized memory. These issues were addressed in Graphite 2 version 1.3.10. This vulnerability affects ...
CVE-2017-5436
- EPSS 1.03%
- Veröffentlicht 11.06.2018 21:29:05
- Zuletzt bearbeitet 21.11.2024 03:27:36
An out-of-bounds write in the Graphite 2 library triggered with a maliciously crafted Graphite font. This results in a potentially exploitable crash. This issue was fixed in the Graphite 2 library as well as Mozilla products. This vulnerability affec...
CVE-2018-7999
- EPSS 0.18%
- Veröffentlicht 09.03.2018 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:13:03
In libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation, which may allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .t...
CVE-2016-2802
- EPSS 0.79%
- Veröffentlicht 13.03.2016 18:59:41
- Zuletzt bearbeitet 12.04.2025 10:46:40
The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have ...