PublicDateAtUSN: 2016-08-08 Candidate: CVE-2016-5384 PublicDate: 2016-08-13 01:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5384 https://lists.freedesktop.org/archives/fontconfig/2016-August/005792.html https://ubuntu.com/security/notices/USN-3063-1 Description: fontconfig before 2.12.1 does not validate offsets, which allows local users to trigger arbitrary free calls and consequently conduct double free attacks and execute arbitrary code via a crafted cache file. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=833570 Priority: medium Discovered-by: Tobias Stoeckmann Assigned-to: mdeslaur CVSS: nvd: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [7.8 HIGH] nvd: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [7.8 HIGH] Patches_fontconfig: upstream: https://cgit.freedesktop.org/fontconfig/commit/?id=7a4a5bd7897d216f0794ca9dbce0a4a5c9d14940 upstream_fontconfig: released (2.12.1) precise_fontconfig: released (2.8.0-3ubuntu9.2) precise/esm_fontconfig: DNE (precise was released [2.8.0-3ubuntu9.2]) trusty_fontconfig: released (2.11.0-0ubuntu4.2) trusty/esm_fontconfig: released (2.11.0-0ubuntu4.2) vivid/stable-phone-overlay_fontconfig: ignored (reached end-of-life) vivid/ubuntu-core_fontconfig: DNE xenial_fontconfig: released (2.11.94-0ubuntu1.1) esm-infra/xenial_fontconfig: released (2.11.94-0ubuntu1.1) yakkety_fontconfig: released (2.11.94-0ubuntu2) zesty_fontconfig: released (2.11.94-0ubuntu2) devel_fontconfig: released (2.11.94-0ubuntu2)