[Bug 1191190] CVE-2014-9674 freetype: multiple integer overflows Mac_Read_POST_Resource() leading to heap-based buffer overflows

bugzilla at redhat.com bugzilla at redhat.com
Tue Feb 24 14:48:48 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1191190


--- Doc Text *updated* by Tomas Hoger <thoger at redhat.com> ---
Multiple integer overflow flaws, leading to heap-based buffer overflows, were found in the way FreeType handled Mac fonts. If a specially-crafted font file was loaded by an application linked against FreeType, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.


-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=ydXSTfsjnJ&a=cc_unsubscribe


More information about the fonts-bugs mailing list