Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2x3-xp3h-v29x

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.

EPSS

Процентиль: 82%
0.01687
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 13 лет назад

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.

redhat
почти 13 лет назад

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.

nvd
почти 13 лет назад

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.

debian
почти 13 лет назад

The _bdf_parse_glyphs function in FreeType before 2.4.11 allows contex ...

oracle-oval
почти 13 лет назад

ELSA-2013-0216: freetype security update (IMPORTANT)

EPSS

Процентиль: 82%
0.01687
Низкий

Дефекты

CWE-119