Oval Definition:
oval:org.mitre.oval:def:22278
Revision Date
:
2014-02-24
Version
:
10
Title
:
RHSA-2010:0889: freetype security update (Important)
Description
:
Buffer overflow in the ft_var_readpackedpoints function in truetype/ttgxvar.c in FreeType 2.4.3 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TrueType GX font.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CESA-2010:0889
CVE-2010-3855
RHSA-2010:0889-01
Platform(s)
:
CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s)
:
freetype
Definition Synopsis
Operation system section
Redhat 5 or Centos 5 release
The operating system installed on the system is Red Hat Enterprise Linux 5
OR
The operating system installed on the system is CentOS Linux 5.x
AND
Packages section
freetype-demos is earlier than 0:2.2.1-28.el5_5.1
OR
freetype is earlier than 0:2.2.1-28.el5_5.1
OR
freetype-devel is earlier than 0:2.2.1-28.el5_5.1
Operation system section
The operating system installed on the system is Red Hat Enterprise Linux 6
AND
Packages section
freetype-demos is earlier than 0:2.3.11-6.el6_0.2
OR
freetype is earlier than 0:2.3.11-6.el6_0.2
OR
freetype-devel is earlier than 0:2.3.11-6.el6_0.2
BACK