High severity8.1NVD Advisory· Published Feb 13, 2016· Updated May 6, 2026
CVE-2016-1526
CVE-2016-1526
Description
The TtfUtil:LocaLookup function in TtfUtil.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, incorrectly validates a size value, which allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a crafted Graphite smart font.
Affected products
19cpe:2.3:a:mozilla:firefox:38.0:*:*:*:*:*:*:*+ 12 more
- cpe:2.3:a:mozilla:firefox:38.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.5.0:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:mozilla:firefox:38.6.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
15- blog.talosintel.com/2016/02/vulnerability-spotlight-libgraphite.htmlnvdThird Party Advisory
- lists.fedoraproject.org/pipermail/package-announce/2016-February/177520.htmlnvdThird Party Advisory
- lists.fedoraproject.org/pipermail/package-announce/2016-May/184623.htmlnvdThird Party Advisory
- www.debian.org/security/2016/dsa-3479nvdThird Party Advisory
- www.mozilla.org/security/announce/2016/mfsa2016-14.htmlnvdVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2016-03/msg00052.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-03/msg00058.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-03/msg00088.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-0594.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-0695.htmlnvd
- www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.htmlnvd
- www.securityfocus.com/bid/82991nvd
- www.ubuntu.com/usn/USN-2902-1nvd
- security.gentoo.org/glsa/201701-35nvd
- security.gentoo.org/glsa/201701-63nvd
News mentions
0No linked articles in our index yet.