Show filters
93 Total Results
Displaying 81-90 of 93
Sort by:
Attacker Value
Unknown

CVE-2010-2519

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted length value in a POST fragment header in a font file.
0
Attacker Value
Unknown

CVE-2010-2806

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via negative size values for certain strings in FontType42 font files, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2010-2805

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown

CVE-2009-0946

Disclosure Date: April 17, 2009 (last updated October 04, 2023)
Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors related to large values in certain inputs in (1) smooth/ftsmooth.c, (2) sfnt/ttcmap.c, and (3) cff/cffload.c.
0
Attacker Value
Unknown

CVE-2008-1807

Disclosure Date: June 16, 2008 (last updated October 04, 2023)
FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via an invalid "number of axes" field in a Printer Font Binary (PFB) file, which triggers a free of arbitrary memory locations, leading to memory corruption.
0
Attacker Value
Unknown

CVE-2008-1808

Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Multiple off-by-one errors in FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via (1) a crafted table in a Printer Font Binary (PFB) file or (2) a crafted SHC instruction in a TrueType Font (TTF) file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2008-1806

Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Integer overflow in FreeType2 before 2.3.6 allows context-dependent attackers to execute arbitrary code via a crafted set of 16-bit length values within the Private dictionary table in a Printer Font Binary (PFB) file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2007-3506

Disclosure Date: July 02, 2007 (last updated October 04, 2023)
The ft_bitmap_assure_buffer function in src/base/ftbimap.c in FreeType 2.3.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors involving bitmap fonts, related to a "memory buffer overwrite bug."
0
Attacker Value
Unknown

CVE-2007-2754

Disclosure Date: May 17, 2007 (last updated October 04, 2023)
Integer signedness error in truetype/ttgload.c in Freetype 2.3.4 and earlier might allow remote attackers to execute arbitrary code via a crafted TTF image with a negative n_points value, which leads to an integer overflow and heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2006-3467

Disclosure Date: July 21, 2006 (last updated October 04, 2023)
Integer overflow in FreeType before 2.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PCF file, as demonstrated by the Red Hat bad1.pcf test file, due to a partial fix of CVE-2006-1861.
0