Vulnerability CVE-2010-2520: Information
Description
Heap-based buffer overflow in the Ins_IUP function in truetype/ttinterp.c in FreeType before 2.4.0, when TrueType bytecode support is enabled, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
Severity: MEDIUM (5.1)
References to Advisories, Solutions, and Tools
Hyperlink | Resource |
---|---|
DSA-2070 |
|
[freetype] 20100712 FreeType 2.4.0 has been released |
|
USN-963-1 |
|
http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=888cd1843e935fe675cf2ac303116d4ed5b9d54b |
|
MDVSA-2010:137 |
|
[oss-security] 20100713 Multiple bugs in freetype |
|
https://savannah.nongnu.org/bugs/?30361 |
|
[oss-security] 20100714 Re: Multiple bugs in freetype |
|
https://bugzilla.redhat.com/show_bug.cgi?id=613198 |
|
APPLE-SA-2010-11-10-1 |
|
http://support.apple.com/kb/HT4435 |
|
48951 |
|