Debian Security Advisory

DSA-2838-1 libxfont -- buffer overflow

Date Reported:
07 Jan 2014
Affected Packages:
libxfont
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2013-6462.
More information:

It was discovered that a buffer overflow in the processing of Glyph Bitmap Distribution fonts (BDF) could result in the execution of arbitrary code.

For the oldstable distribution (squeeze), this problem has been fixed in version 1:1.4.1-4.

For the stable distribution (wheezy), this problem has been fixed in version 1:1.4.5-3.

For the unstable distribution (sid), this problem has been fixed in version 1:1.4.7-1.

We recommend that you upgrade your libxfont packages.