Known vulnerabilities in libXfont

Vendor: X.org
Software: libXfont
Software CPE: cpe:2.3:a:x_org:libxfont:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 9
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting libXfont libXfont is affected by 9 known vulnerabilities: 3 high, 3 medium, 3 low Critical High Medium Low

Vulnerabilities (9)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU9524 - Permissions, Privileges, and Access Controls
CVE-2017-16611
CWE-264 Low
No
No
- 04.12.2017 SB2017112915
SB2017112916
SB2017112813
and 8 more
#VU38075 - Out-of-bounds read
CVE-2017-13720
CWE-125 Low
No
No
- 11.10.2017 SB2017101128
SB2017111105
SB2017101137
and 2 more
#VU38076 - Out-of-bounds read
CVE-2017-13722
CWE-125 Low
No
No
- 11.10.2017 SB2017101128
SB2017111105
SB2017101137
and 2 more
#VU38457 - Memory corruption
CVE-2007-5199
CWE-119 High
No
No
- 18.08.2017 SB2017081817
#VU32539 - Memory corruption
CVE-2014-0210
CWE-119 Medium
No
No
1.4.8 15.05.2014 SB2014051502
SB2014051418
SB2014091809
and 1 more
#VU33847 - Improper input validation
CVE-2014-0209
CWE-20 Medium
No
No
1.4.8 15.05.2014 SB2014051505
SB2014051417
SB2014091809
and 1 more
#VU33848 - Improper input validation
CVE-2014-0211
CWE-20 Medium
No
No
1.4.8 15.05.2014 SB2014051506
SB2014051419
SB2014091809
and 1 more
#VU32591 - Stack-based buffer overflow
CVE-2013-6462
CWE-121 High
No
No
1.4.7 09.01.2014 SB2014010902
SB2014011411
SB2014020310
and 2 more
#VU32852 - Heap-based Buffer Overflow
CVE-2011-2895
CWE-122 High
No
No
1.4.4 19.08.2011 SB2011081902
SB2011101706
SB2011120807
and 3 more