CVE-2011-0764
Publication date 31 March 2011
Last updated 24 July 2024
Ubuntu priority
t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arbitrary code via a crafted Type 1 font in a PDF document, as demonstrated by testz.2184122398.pdf.
Notes
References
Related Ubuntu Security Notices (USN)
- USN-1316-1
- t1lib vulnerability
- 21 December 2011