Bug#1064517: texlive-bin: CVE-2024-25262

2024-02-23 Thread Moritz Muehlenhoff
On Fri, Feb 23, 2024 at 10:13:53PM +0100, Hilmar Preuße wrote: > On 23.02.24 16:31, Moritz Mühlenhoff wrote: > > Hello Moritz, > > > The following vulnerability was published for texlive-bin. > > > > CVE-2024-25262[0]: > > | texlive-bin commit c515e was discovered to contain heap buffer > > |

Bug#1064517: texlive-bin: CVE-2024-25262

2024-02-23 Thread Hilmar Preuße
On 23.02.24 16:31, Moritz Mühlenhoff wrote: Hello Moritz, The following vulnerability was published for texlive-bin. CVE-2024-25262[0]: | texlive-bin commit c515e was discovered to contain heap buffer | overflow via the function ttfLoadHDMX:ttfdump. This vulnerability | allows attackers to

Bug#1064517: texlive-bin: CVE-2024-25262

2024-02-23 Thread Moritz Mühlenhoff
Source: texlive-bin X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for texlive-bin. CVE-2024-25262[0]: | texlive-bin commit c515e was discovered to contain heap buffer | overflow via the function ttfLoadHDMX:ttfdump. This