[freetype] [CVE-2007-1351] integer overflow, possibility of local DoS or arbitrary code execution

Bug #181285 reported by disabled.user
254
Affects Status Importance Assigned to Milestone
freetype (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

References:
DSA-1454-1 (http://www.debian.org/security/2008/dsa-1454)

Quoting:
"Greg MacManus discovered an integer overflow in the font handling of
libfreetype, a FreeType 2 font engine, which might lead to denial of
service or possibly the execution of arbitrary code if a user is tricked
into opening a malformed font."

CVE References

Revision history for this message
Jamie Strandboge (jdstrand) wrote :
Changed in freetype:
status: New → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.