CVE-2011-5244
Published: 19 November 2012
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a DVI file containing a crafted Adobe Font Metrics (AFM) file, different vulnerabilities than CVE-2010-2642 and CVE-2011-0433.
Notes
Author | Note |
---|---|
jdstrand | this was fixed in the patchset for USN-1035-1, but the afmparse.c portion is only just now getting a CVE |
Priority
Status
Package | Release | Status |
---|---|---|
evince Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Released
(2.30.3-0ubuntu1.2)
|
|
oneiric |
Not vulnerable
(3.2.1-0ubuntu2.3)
|
|
precise |
Not vulnerable
|
|
quantal |
Not vulnerable
|
|
upstream |
Released
(2.91.5)
|
|
This vulnerability is mitigated in part by an AppArmor profile. |