Summary DirectFB is prone to an out-of-bound write vulnerability since version 1.4.4. The vulnerability can be triggered remotely without authentication through Voodoo interface (network layer of DirectFB). Details An attacker can choose to overflow in the heap or the stack. CVSS Version 2 Metrics Access Vector: Network exploitable …