TeX Live CVE-2018-17407 Buffer Overflow Vulnerability
BID:107220
Info
TeX Live CVE-2018-17407 Buffer Overflow Vulnerability
| Bugtraq ID: | 107220 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2018-17407 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 23 2018 12:00AM |
| Updated: | Sep 23 2018 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Ubuntu Ubuntu Linux 18.10 Ubuntu Ubuntu Linux 18.04 LTS Ubuntu Ubuntu Linux 16.04 LTS Ubuntu Ubuntu Linux 14.04 LTS Tex Live TeX Live 0 |
| Not Vulnerable: | |
Discussion
TeX Live CVE-2018-17407 Buffer Overflow Vulnerability
TeX Live is prone to a buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected application to cause denial-of-service conditions.
TeX Live is prone to a buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the affected application to cause denial-of-service conditions.
References
TeX Live CVE-2018-17407 Buffer Overflow Vulnerability
References:
References:
- writet1 protection against buffer overflow (TeX-Live)
- TeX Live Homepage (TeX)
- Bug 1632802 (CVE-2018-17407) - CVE-2018-17407 texlive: Buffer overflow in t1_ch (Redhat)
- USN-3788-1: Tex Live vulnerabilities (Ubuntu)
- USN-3788-2: Tex Live-bin vulnerability (Ubuntu)
- CVE-2018-17407 (Redhat)
- DSA-4299-1 texlive-bin -- security update (Debian)