CVE Database
/

CVE-2011-0433

Back to search

CVE-2011-0433

Published: Nov 19, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, a different vulnerability than CVE-2010-2642.

VendorProductVersions

n/a

n/a

affected
n/a

References

48985
third-party-advisory
x_refsource_SECUNIA
RHSA-2012:1201
vendor-advisory
x_refsource_REDHAT
MDVSA-2012:144
vendor-advisory
x_refsource_MANDRIVA
GLSA-201701-57
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now