CVE Tools

T1LIB

7 CVEs tracked since 2011. Since Jan 2011, none of them reached CISA KEV.

T1LIB CVEs per month

Jan 2011 to Nov 2012. Point at a month, or focus the strip and use the arrow keys.
T1LIB CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2011-0110
2011-02null or fewer
2011-0340
2011-04null or fewer
2011-05null or fewer
2011-06null or fewer
2011-07null or fewer
2011-08null or fewer
2011-09null or fewer
2011-10null or fewer
2011-11null or fewer
2011-12null or fewer
2012-01null or fewer
2012-02null or fewer
2012-03null or fewer
2012-04null or fewer
2012-05null or fewer
2012-06null or fewer
2012-07null or fewer
2012-08null or fewer
2012-09null or fewer
2012-10null or fewer
2012-1120

Products

The products that kept showing up in T1LIB's monthly top three, with their CVEs summed over those months.

  1. T1LIB73 months

Latest CVEs

The 8 most recently published vulnerabilities affecting T1LIB.

  1. CVE-2011-5244Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote ...6.8
  2. CVE-2011-0433Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allows remote attackers to cause a denial of service ...6.8
  3. CVE-2011-1554Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a denial of service (application crash) via a PDF document c...4.3
  4. CVE-2011-1552t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remote attackers to cause a denial of service (application cras...4.3
  5. CVE-2011-1553Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a denial of service (application crash) via a PD...4.3
  6. CVE-2011-0764t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereference operation, which allows remote attackers to execute arb...6.8
  7. CVE-2010-2642Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote attackers to cause a den...7.6
  8. CVE-2007-4033Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this ...7.5

The record

Peak rank
#23 in Mar 2011
Busiest month shown
Mar 2011, 4 CVEs
Months with a KEV entry
0 since Jan 2011
Monthly snapshots
3 since 2011
T1LIB's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store