CVE-2016-5384

HIGH

Fedora < 2.12.1 - Double Free

Title source: rule
STIX 2.1

Description

fontconfig before 2.12.1 does not validate offsets, which allows local users to trigger arbitrary free calls and consequently conduct double free attacks and execute arbitrary code via a crafted cache file.

References (8)

Core 8
Core References
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-3063-1
Mailing List, Patch, Third Party Advisory mailing-list x_refsource_mlist
https://lists.freedesktop.org/archives/fontconfig/2016-August/005792.html
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2016-2601.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/92339
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2016/dsa-3644

Scores

CVSS v3 7.8
EPSS 0.0041
EPSS Percentile 32.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-415
Status published
Products (7)
canonical/ubuntu_linux 12.04
canonical/ubuntu_linux 14.04
canonical/ubuntu_linux 16.04
debian/debian_linux 8.0
fedoraproject/fedora 23
fedoraproject/fedora 24
fontconfig_project/fontconfig < 2.12.1
Published Aug 13, 2016
Tracked Since Feb 18, 2026