Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-1142

Опубликовано: 01 мар. 2012
Источник: redhat
CVSS2: 6.8

Описание

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph-outline data in a font.

Дополнительная информация

Статус:

Important
Дефект:
CWE-122
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=800604freetype: incorrect computation of number of glyphs in FNT_Face_Init() for FNT/FON files (#35659)

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 14 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph-outline data in a font.

nvd
почти 14 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph-outline data in a font.

debian
почти 14 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 ...

github
больше 3 лет назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap write operation and memory corruption) or possibly execute arbitrary code via crafted glyph-outline data in a font.

oracle-oval
почти 14 лет назад

ELSA-2012-0467: freetype security update (IMPORTANT)

6.8 Medium

CVSS2