CVE-2024-25081
published 2024-02-26CVE-2024-25081: Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
PriorityP427medium4.2CVSS 3.1
AVLACHPRLUIRSUCLILAL
EPSS
1.08%
61.4th percentile
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | fontforge | < fontforge 1:20230101~dfsg-1.1~deb12u1 (bookworm) | fontforge 1:20230101~dfsg-1.1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fontforge | fontforge | <= 20230101 | — |
| fontforge | fontforge | >= 0 < 1:20201107~dfsg-4+deb11u1 | 1:20201107~dfsg-4+deb11u1 |
| fontforge | fontforge | >= 0 < 1:20230101~dfsg-1.1~deb12u1 | 1:20230101~dfsg-1.1~deb12u1 |
| fontforge | fontforge | >= 0 < 1:20230101~dfsg-1.1 | 1:20230101~dfsg-1.1 |
| fontforge | fontforge | >= 0 < 1:20230101~dfsg-1.1 | 1:20230101~dfsg-1.1 |
| fontforge | fontforge | >= 0 < 1:20190801~dfsg-4ubuntu0.1 | 1:20190801~dfsg-4ubuntu0.1 |
| fontforge | fontforge | >= 0 < 1:20201107~dfsg-4+deb11u1build0.22.04.1 | 1:20201107~dfsg-4+deb11u1build0.22.04.1 |
| fontforge | fontforge | >= 0 < 20120731.b-7.1ubuntu0.1+esm1 | 20120731.b-7.1ubuntu0.1+esm1 |
| fontforge | fontforge | >= 0 < 1:20170731~dfsg-1ubuntu0.1~esm1 | 1:20170731~dfsg-1ubuntu0.1~esm1 |
CVSS provenance
nvdv3.14.2MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L
osv4.2MEDIUM
vendor_debian4.2MEDIUM
vendor_redhat4.2MEDIUM
vendor_ubuntu4.2MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
FontForge vulnerabilities
vendor_ubuntu·2024-06-27·CVSS 4.2
CVE-2024-25082 [MEDIUM] FontForge vulnerabilities
Title: FontForge vulnerabilities
Summary: Several security issues were fixed in FontForge.
It was discovered that FontForge incorrectly handled filenames. If a user or an
automated system were tricked into opening a specially crafted input file, a
remote attacker could possibly use this issue to perform a command injection.
(CVE-2024-25081)
It was discovered that FontForge incorrectly handled archives and compressed
files. If a user or an automated system were tricked into opening a specially
crafted input file, a remote attacker could possibly use this issue to perform
command injection. (CVE-2024-25082)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
fontforge: command injection via crafted filenames
vendor_redhat·2024-02-26·CVSS 4.2
CVE-2024-25081 [MEDIUM] CWE-78 fontforge: command injection via crafted filenames
fontforge: command injection via crafted filenames
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
Package: fontforge (Red Hat Enterprise Linux 6) - Out of support scope
Package: fontforge (Red Hat Enterprise Linux 7) - Out of support scope
Debian
CVE-2024-25081: fontforge - Splinefont in FontForge through 20230101 allows command injection via crafted fi...
vendor_debian·2024·CVSS 4.2
CVE-2024-25081 [MEDIUM] CVE-2024-25081: fontforge - Splinefont in FontForge through 20230101 allows command injection via crafted fi...
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
Scope: local
bookworm: resolved (fixed in 1:20230101~dfsg-1.1~deb12u1)
bullseye: resolved (fixed in 1:20201107~dfsg-4+deb11u1)
forky: resolved (fixed in 1:20230101~dfsg-1.1)
sid: resolved (fixed in 1:20230101~dfsg-1.1)
trixie: resolved (fixed in 1:20230101~dfsg-1.1)
OSV
fontforge vulnerabilities
osv·2024-06-27·CVSS 4.2
CVE-2024-25081 [MEDIUM] fontforge vulnerabilities
fontforge vulnerabilities
It was discovered that FontForge incorrectly handled filenames. If a user or an
automated system were tricked into opening a specially crafted input file, a
remote attacker could possibly use this issue to perform a command injection.
(CVE-2024-25081)
It was discovered that FontForge incorrectly handled archives and compressed
files. If a user or an automated system were tricked into opening a specially
crafted input file, a remote attacker could possibly use this issue to perform
command injection. (CVE-2024-25082)
GHSA
GHSA-rjx3-xwwm-jhj5: Splinefont in FontForge through 20230101 allows command injection via crafted filenames
ghsa_unreviewed·2024-02-26
CVE-2024-25081 [MEDIUM] CWE-77 GHSA-rjx3-xwwm-jhj5: Splinefont in FontForge through 20230101 allows command injection via crafted filenames
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
OSV
CVE-2024-25081: Splinefont in FontForge through 20230101 allows command injection via crafted filenames
osv·2024-02-26·CVSS 4.2
CVE-2024-25081 [MEDIUM] CVE-2024-25081: Splinefont in FontForge through 20230101 allows command injection via crafted filenames
Splinefont in FontForge through 20230101 allows command injection via crafted filenames.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2024/03/08/2https://fontforge.org/en-US/downloads/https://github.com/fontforge/fontforge/pull/5367https://lists.debian.org/debian-lts-announce/2024/03/msg00007.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GCH22HIO2C6M4BZWF5EYIWVFBXL5BQAH/http://www.openwall.com/lists/oss-security/2024/03/08/2https://fontforge.org/en-US/downloads/https://github.com/fontforge/fontforge/pull/5367https://lists.debian.org/debian-lts-announce/2024/03/msg00007.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GCH22HIO2C6M4BZWF5EYIWVFBXL5BQAH/https://lists.fedoraproject.org/archives/list/[email protected]/message/GCH22HIO2C6M4BZWF5EYIWVFBXL5BQAH/
2024-02-26
Published