Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-1134

Опубликовано: 23 фев. 2012
Источник: redhat
CVSS2: 6.8

Описание

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted private-dictionary data in a Type 1 font.

Дополнительная информация

Статус:

Important
Дефект:
CWE-122
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=800592freetype: limited heap buffer overflow in Type1 parser T1_Get_Private_Dict() (#35608)

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted private-dictionary data in a Type 1 font.

nvd
больше 13 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted private-dictionary data in a Type 1 font.

debian
больше 13 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 ...

github
больше 3 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted private-dictionary data in a Type 1 font.

oracle-oval
больше 13 лет назад

ELSA-2012-0467: freetype security update (IMPORTANT)

6.8 Medium

CVSS2