Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-4952

Опубликовано: 13 нояб. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-4952: freetype security update (IMPORTANT)

[2.9.1-4.el8_3.1]

  • Test bitmap size earlier for PNGs
  • Fix memory leak in pngshim.c
  • Resolves: #1891905

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

freetype

2.9.1-4.el8_3.1

freetype-devel

2.9.1-4.el8_3.1

Oracle Linux x86_64

freetype

2.9.1-4.el8_3.1

freetype-devel

2.9.1-4.el8_3.1

Связанные CVE

Связанные уязвимости

CVSS3: 9.6
ubuntu
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.6
redhat
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 9.6
nvd
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 6.5
msrc
4 месяца назад

Описание отсутствует

CVSS3: 9.6
debian
больше 4 лет назад

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.1 ...