Medium severity6.5NVD Advisory· Published May 4, 2018· Updated Jun 17, 2026
CVE-2018-10733
CVE-2018-10733
Description
There is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will lead to a remote denial of service attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14- osv-coords8 versionspkg:rpm/opensuse/libgxps&distro=openSUSE%20Leap%2015.0pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/libgxps&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4
< 0.3.0-lp150.3.3.2+ 7 more
- (no CPE)range: < 0.3.0-lp150.3.3.2
- (no CPE)range: < 0.2.2-10.3.5
- (no CPE)range: < 0.2.2-10.3.5
- (no CPE)range: < 0.2.2-10.3.5
- (no CPE)range: < 0.3.0-4.3.29
- (no CPE)range: < 0.2.2-10.3.5
- (no CPE)range: < 0.2.2-10.3.5
- (no CPE)range: < 0.2.2-10.3.5
- cpe:2.3:a:redhat:ansible_tower:3.3:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- bugzilla.redhat.com/show_bug.cginvdExploitIssue TrackingPatchThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2019-04/msg00005.htmlnvdMailing ListThird Party Advisory
- access.redhat.com/errata/RHBA-2019:0327nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:3140nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:3505nvdThird Party Advisory
News mentions
0No linked articles in our index yet.