In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
No history.
Information
Published : 2017-12-01 17:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-16611
Mitre link : CVE-2017-16611
CVE.ORG link : CVE-2017-16611
JSON object : View
Products Affected
x
- libxfont
debian
- debian_linux
canonical
- ubuntu_linux
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')