[3.5] fontconfig: Possible double free due to insufficiently validated cache files (CVE-2016-5384)ID: oval:org.secpod.oval:def:1800472 | Date: (C)2018-03-28 (M)2023-12-20 |
Class: PATCH | Family: unix |
It was reported that offsets contained in cache files aren"t checked if they"re in legal ranges or are pointers at all. The lack of validation allows an attacker to trigger arbitrary free calls, which in turn allows double free attacks and therefore arbitrary code execution. When used with setuid binaries using crafted cache files, privilege escalation is possible. Reference Patch
Platform: |
Alpine Linux 3.5 |