Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Gnome Fonts Viewer 3.34.0 Heap Corruption
Vulnerability Description
Gnome Fonts Viewer 3.34.0 contains a heap corruption vulnerability that allows attackers to trigger an out-of-bounds write by crafting a malicious TTF font file. Attackers can generate a specially crafted TTF file with an oversized pattern to cause an infinite malloc() loop and potentially crash the gnome-font-viewer process.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
跨界内存写
Vulnerability Title
GNOME Fonts Viewer 安全漏洞
Vulnerability Description
GNOME Fonts Viewer是GNOME开源的一个字体管理工具。 Gnome Fonts Viewer 3.34.0版本存在安全漏洞,该漏洞源于恶意TTF字体文件可能导致堆损坏和越界写入,可能使进程崩溃。
CVSS Information
N/A
Vulnerability Type
N/A