PT-2009-1047 · Freetype+1 · Freetype+1

Vincent Danen

·

Published

2009-04-17

·

Updated

2024-06-15

·

CVE-2009-0946

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions freetype versions prior to 2.3.9 freetype-devel version 2.0.3 freetype-utils version 2.0.3
Description The issue concerns multiple integer overflows in FreeType, which can be exploited remotely to execute arbitrary code. This can lead to a breach of confidentiality, integrity, and availability of protected information. The overflows are related to large values in certain inputs in files such as smooth/ftsmooth.c, sfnt/ttcmap.c, and cff/cffload.c.
Recommendations For freetype versions prior to 2.3.9, update to version 2.3.9 or later. For freetype-devel version 2.0.3, consider upgrading to a newer version of freetype-devel that incorporates the fixes for the integer overflows. For freetype-utils version 2.0.3, consider upgrading to a newer version of freetype-utils that incorporates the fixes for the integer overflows. As a temporary workaround, consider restricting access to the vulnerable components, such as smooth/ftsmooth.c, sfnt/ttcmap.c, and cff/cffload.c, until a patch is available.

Fix

RCE

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-06175
BDU:2015-06177
BDU:2015-06179
BDU:2015-09390
CVE-2009-0946
DSA-1784-1
OPENSUSE-SU-2024:10172-1
OPENSUSE-SU-2024:10438-1
RHSA-2009:0329
RHSA-2009:1061
RHSA-2009:1062
RHSA-2009_0329
RHSA-2009_1061

Affected Products

Freetype
Red Hat