CVE-2017-10976

NameCVE-2017-10976
DescriptionWhen SWFTools 0.9.2 processes a crafted file in ttftool, it can lead to a heap-based buffer over-read in the readBlock() function in lib/ttf.c.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
swftoolssource(unstable)(unfixed)unimportant

Notes

ttftool not shipped in Debian package

Search for package or bug name: Reporting problems