CVE-2007-1351

Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.

公開: 2007-04-06 最終更新: 2026-04-23 Assigner: [email protected] ソース: [email protected]

総合評価: CVE-2007-1351 は中リスク(64/100)。CVSS 深刻度は高。悪用される可能性が高い(EPSS 5.59%、92 パーセンタイル) 根拠: EPSS 上、短期間での悪用可能性は高い水準です。 推奨対応: 悪用可能性が高いため、影響範囲の確認と修補の優先付けを推奨します。

リスクは変動します。再評価に基づき、本ページの表示内容を更新しています。

CVE-2007-1351 の EPSS(Exploit Prediction Scoring System)スコア

EPSS は日次で悪用されやすさの相対度合いを推定します。パーセンタイルは採点済み CVE の中での相対位置(高いほど相対的に深刻)を示します。

# 日付 旧 EPSS スコア 新 EPSS スコア Δ(新 − 旧)
1 2026-06-15 7.77% 5.59% -2.18%
2 2025-12-23 7.32% 7.77% +0.45%
3 2025-12-10 7.32%

EPSS の全履歴 (全 20 件)

CVE-2007-1351 の CVSS(Common Vulnerability Scoring System)指標

この CVE の CVSS 指標。

ベーススコア バージョン 深刻度 ベクトル 悪用しやすさ 影響 スコアの出典
8.5 2.0 HIGH
AV:N/AC:M/Au:S/C:C/I:C/A:C クリックして展開
アクセス経路 (AV:N)
ルーティング可能なネットワーク越しに、遠隔から到達・悪用しうる。
アクセスの複雑さ (AC:M)
多少の有利条件は要るが、極端なレアケースではない。
認証 (AU:S)
一度の認証(シングルサインオン含む)を突破すればよい。
機密性への影響 (C:C)
機密性は全面的に損なわれる。
完全性への影響 (I:C)
完全性は全面的に損なわれる。
可用性への影響 (A:C)
可用性は全面的に損なわれる。
6.8 10.0 [email protected]

CVE-2007-1351 の弱点分類(列挙)

CVE-2007-1351 の OS トラッカー

vendor priority summary link
debian medium CVE-2007-1351 medium priority: Debian including 2 source packages (freetype, libxfont), 10 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 10. https://security-tracker.debian.org/tracker/CVE-2007-1351
gentoo high CVE-2007-1351: 2 GLSA(s) (200705-02, 200705-10), 3 atom(s) (media-libs/freetype, net-misc/tightvnc, x11-libs/libXfont); latest impact high. https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2007-1351
redhat high https://access.redhat.com/security/cve/CVE-2007-1351
suse high CVE-2007-1351 severity important: SUSE including 38 source package names (freetype2-2.3.7-25.10.1, freetype2-2.3.7-25.28.1, …), 39 product×package rows across 9 product lines (SUSE Linux Enterprise Server 11 SP1, SUSE Linux Enterprise Server 11 SP2, … (9 product lines)): Fixed 39. https://www.suse.com/security/cve/CVE-2007-1351/
ubuntu medium CVE-2007-1351 medium priority: Ubuntu including 2 source packages (freetype, libxfont), 8 status rows across 4 suites (dapper, edgy, feisty, upstream): released 7, needs-triage 1. https://ubuntu.com/security/CVE-2007-1351

CVE-2007-1351 の影響を受けるソフトウェア/構成

ベンダー 製品 バージョン 生の CPE
ubuntu ubuntu_linux 5.10 cpe:2.3:o:ubuntu:ubuntu_linux:5.10:*:amd64:*:*:*:*:*
ubuntu ubuntu_linux 5.10 cpe:2.3:o:ubuntu:ubuntu_linux:5.10:*:i386:*:*:*:*:*
ubuntu ubuntu_linux 5.10 cpe:2.3:o:ubuntu:ubuntu_linux:5.10:*:powerpc:*:*:*:*:*
ubuntu ubuntu_linux 5.10 cpe:2.3:o:ubuntu:ubuntu_linux:5.10:*:sparc:*:*:*:*:*
ubuntu ubuntu_linux 6.06_lts cpe:2.3:o:ubuntu:ubuntu_linux:6.06_lts:*:amd64:*:*:*:*:*
ubuntu ubuntu_linux 6.06_lts cpe:2.3:o:ubuntu:ubuntu_linux:6.06_lts:*:i386:*:*:*:*:*
ubuntu ubuntu_linux 6.06_lts cpe:2.3:o:ubuntu:ubuntu_linux:6.06_lts:*:powerpc:*:*:*:*:*
ubuntu ubuntu_linux 6.06_lts cpe:2.3:o:ubuntu:ubuntu_linux:6.06_lts:*:sparc:*:*:*:*:*
ubuntu ubuntu_linux 6.10 cpe:2.3:o:ubuntu:ubuntu_linux:6.10:*:amd64:*:*:*:*:*
ubuntu ubuntu_linux 6.10 cpe:2.3:o:ubuntu:ubuntu_linux:6.10:*:i386:*:*:*:*:*
ubuntu ubuntu_linux 6.10 cpe:2.3:o:ubuntu:ubuntu_linux:6.10:*:powerpc:*:*:*:*:*
ubuntu ubuntu_linux 6.10 cpe:2.3:o:ubuntu:ubuntu_linux:6.10:*:sparc:*:*:*:*:*
x.org libxfont 1.2.2 cpe:2.3:a:x.org:libxfont:1.2.2:*:*:*:*:*:*:*
xfree86_project x11r6 4.3.0 cpe:2.3:a:xfree86_project:x11r6:4.3.0:*:*:*:*:*:*:*
xfree86_project x11r6 4.3.0.1 cpe:2.3:a:xfree86_project:x11r6:4.3.0.1:*:*:*:*:*:*:*
xfree86_project x11r6 4.3.0.2 cpe:2.3:a:xfree86_project:x11r6:4.3.0.2:*:*:*:*:*:*:*
rpath rpath_linux 1 cpe:2.3:o:rpath:rpath_linux:1:*:*:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:advanced_server:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:advanced_server_ia64:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:enterprise_server:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:enterprise_server_ia64:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:workstation:*:*:*:*:*
redhat enterprise_linux 2.1 cpe:2.3:o:redhat:enterprise_linux:2.1:*:workstation_ia64:*:*:*:*:*
redhat enterprise_linux 3.0 cpe:2.3:o:redhat:enterprise_linux:3.0:*:advanced_servers:*:*:*:*:*
redhat enterprise_linux 3.0 cpe:2.3:o:redhat:enterprise_linux:3.0:*:enterprise_server:*:*:*:*:*
redhat enterprise_linux 3.0 cpe:2.3:o:redhat:enterprise_linux:3.0:*:workstation:*:*:*:*:*
redhat enterprise_linux 4.0 cpe:2.3:o:redhat:enterprise_linux:4.0:*:advanced_server:*:*:*:*:*
redhat enterprise_linux 4.0 cpe:2.3:o:redhat:enterprise_linux:4.0:*:enterprise_server:*:*:*:*:*
redhat enterprise_linux 4.0 cpe:2.3:o:redhat:enterprise_linux:4.0:*:workstation:*:*:*:*:*
redhat enterprise_linux 5.0 cpe:2.3:o:redhat:enterprise_linux:5.0:*:desktop:*:*:*:*:*
redhat enterprise_linux 5.0 cpe:2.3:o:redhat:enterprise_linux:5.0:*:desktop_workstation:*:*:*:*:*
redhat enterprise_linux 5.0 cpe:2.3:o:redhat:enterprise_linux:5.0:*:server:*:*:*:*:*
redhat enterprise_linux_desktop 3.0 cpe:2.3:o:redhat:enterprise_linux_desktop:3.0:*:*:*:*:*:*:*
redhat enterprise_linux_desktop 4.0 cpe:2.3:o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:*
redhat linux_advanced_workstation 2.1 cpe:2.3:o:redhat:linux_advanced_workstation:2.1:*:ia64:*:*:*:*:*
redhat linux_advanced_workstation 2.1 cpe:2.3:o:redhat:linux_advanced_workstation:2.1:*:itanium:*:*:*:*:*
openbsd openbsd 3.9 cpe:2.3:o:openbsd:openbsd:3.9:*:*:*:*:*:*:*
openbsd openbsd 4.0 cpe:2.3:o:openbsd:openbsd:4.0:*:*:*:*:*:*:*
mandrakesoft mandrake_multi_network_firewall 2.0 cpe:2.3:a:mandrakesoft:mandrake_multi_network_firewall:2.0:*:*:*:*:*:*:*

CVE-2007-1351 の参考情報

URL タグ
http://issues.foresightlinux.org/browse/FL-223
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=501 Patch
http://lists.apple.com/archives/Security-announce/2007/Nov/msg00003.html
http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html
http://lists.freedesktop.org/archives/xorg-announce/2007-April/000286.html
http://rhn.redhat.com/errata/RHSA-2007-0125.html
http://secunia.com/advisories/24741 Vendor Advisory
http://secunia.com/advisories/24745
http://secunia.com/advisories/24756
http://secunia.com/advisories/24758
http://secunia.com/advisories/24765
http://secunia.com/advisories/24768
http://secunia.com/advisories/24770 Vendor Advisory
http://secunia.com/advisories/24771
http://secunia.com/advisories/24772
http://secunia.com/advisories/24776
http://secunia.com/advisories/24791
http://secunia.com/advisories/24885
http://secunia.com/advisories/24889
http://secunia.com/advisories/24921
http://secunia.com/advisories/24996
http://secunia.com/advisories/25004
http://secunia.com/advisories/25006
http://secunia.com/advisories/25096
http://secunia.com/advisories/25195
http://secunia.com/advisories/25216
http://secunia.com/advisories/25305
http://secunia.com/advisories/25495
http://secunia.com/advisories/28333
http://secunia.com/advisories/30161
http://secunia.com/advisories/33937
http://security.gentoo.org/glsa/glsa-200705-02.xml
http://security.gentoo.org/glsa/glsa-200705-10.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.626733
http://sourceforge.net/project/shownotes.php?group_id=3157&release_id=498954
http://sourceforge.net/project/shownotes.php?release_id=498954
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102886-1
http://support.apple.com/kb/HT3438
http://support.avaya.com/elmodocs2/security/ASA-2007-178.htm
http://support.avaya.com/elmodocs2/security/ASA-2007-193.htm
http://www.debian.org/security/2007/dsa-1294
http://www.debian.org/security/2008/dsa-1454
http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:079
http://www.mandriva.com/security/advisories?name=MDKSA-2007:080
http://www.mandriva.com/security/advisories?name=MDKSA-2007:081
http://www.novell.com/linux/security/advisories/2007_27_x.html
http://www.novell.com/linux/security/advisories/2007_6_sr.html
http://www.openbsd.org/errata39.html#021_xorg
http://www.openbsd.org/errata40.html#011_xorg
http://www.redhat.com/support/errata/RHSA-2007-0126.html
http://www.redhat.com/support/errata/RHSA-2007-0132.html
http://www.redhat.com/support/errata/RHSA-2007-0150.html
http://www.securityfocus.com/archive/1/464686/100/0/threaded
http://www.securityfocus.com/archive/1/464816/100/0/threaded
http://www.securityfocus.com/bid/23283 Patch
http://www.securityfocus.com/bid/23300
http://www.securityfocus.com/bid/23402
http://www.securitytracker.com/id?1017857
http://www.trustix.org/errata/2007/0013/
http://www.ubuntu.com/usn/usn-448-1
http://www.vupen.com/english/advisories/2007/1217
http://www.vupen.com/english/advisories/2007/1264
http://www.vupen.com/english/advisories/2007/1548
https://exchange.xforce.ibmcloud.com/vulnerabilities/33417
https://issues.rpath.com/browse/RPL-1213
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11266
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1810
cvelogic Threat Intelligence