Oval Definition:oval:org.mitre.oval:def:8204
Revision Date:2014-06-23Version:4
Title:DSA-1454 freetype -- integer overflow
Description:Greg MacManus discovered an integer overflow in the font handling of libfreetype, a FreeType 2 font engine, which might lead to denial of service or possibly the execution of arbitrary code if a user is tricked into opening a malformed font. For the old stable distribution (sarge) this problem will be fixed soon. For the stable distribution (etch), this problem has been fixed in version 2.2.1-5+etch2. For the unstable distribution (sid), this problem has been fixed in version 2.3.5-1. We recommend that you upgrade your freetype packages.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2007-1351
DSA-1454
Platform(s):Debian GNU/Linux 4.0
Product(s):freetype
Definition Synopsis
  • Debian GNU/Linux 4.0 is installed.
  • AND Packages section
  • libfreetype6-dev is earlier than 2.2.1-5+etch2
  • OR freetype2-demos is earlier than 2.2.1-5+etch2
  • OR libfreetype6 is earlier than 2.2.1-5+etch2
  • BACK