CVE-2018-17407 is a buffer overflow vulnerability in TeX Live before 2018-09-21, specifically within the t1_check_unusual_charstring functions, affecting tools like pdflatex, pdftex, dvips, and luatex. This flaw allows for arbitrary code execution when a malicious Type 1 font is loaded. Rated 7.8 HIGH, it requires user interaction (UI:R) to load a malicious font, but once triggered, it can lead to high impact on confidentiality, integrity, and availability (C:H/I:H/A:H). While not listed in CISA KEV and lacking public Metasploit or ExploitDB modules, there is community discussion and media coverage, including an article detailing its exploitation, indicating awareness and potential for targeted attacks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2018-09-21CPE matchmatch criteria | cpe:2.3:a:tug:tex_live:*:*:*:*:*:*:*:* | ||
14.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:* | ||
16.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:* | ||
18.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* | ||
18.10CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.