FontForge Bitmap Distribution Format (.BDF) Font File Stack-Based Buffer Overflow

  Bookmark
 and Share

FontForge is an outline font editor application. The application is exposed to a stack-based buffer overflow issue because it fails to properly bounds check user-supplied data before copying it into an insufficiently sized buffer. This issue occurs when the application processes a Bitmap Distribution Format (.BDF) font file that contains a specially crafted "CHARSET_REGISTRY" header. FontForge version 0.0.20100501-2 is affected.

Ref: https://bugzilla.redhat.com/show_bug.cgi?id=659359

10.50.26 - CVE: Not Available
Platform: Cross Platform