Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-2241

Опубликовано: 18 мар. 2014
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to cause a denial of service (assertion failure), as demonstrated by a crafted ttf file.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:freetype:freetype:*:*:*:*:*:*:*:*
Версия до 2.5.2 (включая)
cpe:2.3:a:freetype:freetype:2.5:*:*:*:*:*:*:*
cpe:2.3:a:freetype:freetype:2.5.1:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00618
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 12 лет назад

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to cause a denial of service (assertion failure), as demonstrated by a crafted ttf file.

redhat
почти 12 лет назад

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to cause a denial of service (assertion failure), as demonstrated by a crafted ttf file.

debian
почти 12 лет назад

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer f ...

github
больше 3 лет назад

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to cause a denial of service (assertion failure), as demonstrated by a crafted ttf file.

EPSS

Процентиль: 69%
0.00618
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-20