Bugzilla – Bug 965803
VUL-0: CVE-2016-1521: graphite2: An exploitable out-of-bounds read vulnerability exists in the opcodehandling functionality of Libgr...
Last modified: 2016-04-27 20:22:57 UTC
Quoting from Canonical: "An exploitable out-of-bounds read vulnerability exists in the opcode handling functionality of Libgraphite. A specially crafted font can cause an out-of-bounds read resulting in arbitrary code execution. An attacker can provide a malicious font to trigger this vulnerability." CVE-2016-1521 References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-1521 http://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-1521.html
bugbot adjusting priority
I am afraid I will need more information. This bug appears to be connected to 'Out-of-Bounds Read' of http://blog.talosintel.com/2016/02/vulnerability-spotlight-libgraphite.html There are several commits in the ubuntu bug but I am not sure which is actually fixing the issue. Either provide relevant commit or at least testcase to check we have picked the correct one. Thank you
From what it looks, three git commits need to be applied in order to fix TALOS-2016-0058 and TALOS-2016-0061, both of which are combined in above CVE.
Also for everyone to be aware graphite2 is bundled in libreoffice on sle11.
This is an autogenerated message for OBS integration: This bug (965803) was mentioned in https://build.opensuse.org/request/show/359654 Factory / graphite2
This is an autogenerated message for OBS integration: This bug (965803) was mentioned in https://build.opensuse.org/request/show/367416 13.2 / graphite2
Packages submitted.
SUSE-SU-2016:0779-1: An update that fixes three vulnerabilities is now available. Category: security (important) Bug References: 965803,965807,965810 CVE References: CVE-2016-1521,CVE-2016-1523,CVE-2016-1526 Sources used: SUSE Linux Enterprise Software Development Kit 12-SP1 (src): graphite2-1.3.1-6.1 SUSE Linux Enterprise Software Development Kit 12 (src): graphite2-1.3.1-6.1 SUSE Linux Enterprise Server 12-SP1 (src): graphite2-1.3.1-6.1 SUSE Linux Enterprise Server 12 (src): graphite2-1.3.1-6.1 SUSE Linux Enterprise Desktop 12-SP1 (src): graphite2-1.3.1-6.1 SUSE Linux Enterprise Desktop 12 (src): graphite2-1.3.1-6.1
openSUSE-SU-2016:0791-1: An update that fixes four vulnerabilities is now available. Category: security (important) Bug References: 965803,965806,965807,965810 CVE References: CVE-2016-1521,CVE-2016-1522,CVE-2016-1523,CVE-2016-1526 Sources used: openSUSE 13.2 (src): graphite2-1.2.4-2.4.1
released
openSUSE-SU-2016:0875-1: An update that fixes three vulnerabilities is now available. Category: security (important) Bug References: 965803,965807,965810 CVE References: CVE-2016-1521,CVE-2016-1523,CVE-2016-1526 Sources used: openSUSE Leap 42.1 (src): graphite2-1.3.1-3.1