Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-4907

Опубликовано: 06 нояб. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-4907: freetype security update (IMPORTANT)

[2.8-14.el7_9.1]

  • Test bitmap size earlier for PNGs
  • Fix memory leak in pngshim.c
  • Resolves: #1891635

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

freetype

2.8-14.el7_9.1

freetype-demos

2.8-14.el7_9.1

freetype-devel

2.8-14.el7_9.1

Oracle Linux x86_64

freetype

2.8-14.el7_9.1

freetype-demos

2.8-14.el7_9.1

freetype-devel

2.8-14.el7_9.1

Связанные CVE

Связанные уязвимости

CVSS3: 9.6
ubuntu
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.6
redhat
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 9.6
nvd
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 6.5
msrc
4 месяца назад

Описание отсутствует

CVSS3: 9.6
debian
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.1 ...