Product:

Graphite2

(Sil)
Repositories https://github.com/silnrsi/graphite
#Vulnerabilities 28
Date Id Summary Products Score Patch Annotated
2018-03-09 CVE-2018-7999 In libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation, which may allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .ttf file. Graphite2 8.8
2018-06-11 CVE-2017-7778 A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninitialized memory. These issues were addressed in Graphite 2 version 1.3.10. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2. Debian_linux, Firefox, Firefox_esr, Thunderbird, Graphite2 9.8
2019-04-15 CVE-2017-7777 Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function. Firefox, Graphite2 8.8
2019-04-15 CVE-2017-7776 Heap-based Buffer Overflow read in Graphite2 library in Firefox before 54 in graphite2::Silf::getClassGlyph. Firefox, Graphite2 8.1
2019-04-15 CVE-2017-7774 Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function. Firefox, Graphite2 9.1
2019-04-15 CVE-2017-7773 Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor. Firefox, Graphite2 8.8
2019-04-12 CVE-2017-7772 Heap-based Buffer Overflow in Graphite2 library in Firefox before 54 in lz4::decompress function. Firefox, Graphite2 8.8
2019-04-15 CVE-2017-7771 Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function. Firefox, Graphite2 8.1