[Bug 1191096] CVE-2014-9673 freetype: integer signedness error in Mac_Read_POST_Resource() leading to heap-based buffer overflow

bugzilla at redhat.com bugzilla at redhat.com
Thu Feb 26 09:45:13 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1191096

Martin Prpic <mprpic at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Whiteboard|impact=important,public=201 |impact=important,public=201
                   |41124,reported=20150210,sou |41124,reported=20150210,sou
                   |rce=cve,cvss2=6.8/AV:N/AC:M |rce=cve,cvss2=6.8/AV:N/AC:M
                   |/Au:N/C:P/I:P/A:P,cwe=CWE-2 |/Au:N/C:P/I:P/A:P,cwe=CWE-2
                   |0->CWE-122,rhel-4/freetype= |0->CWE-122,rhel-4/freetype=
                   |wontfix,rhel-5/freetype=aff |wontfix,rhel-5/freetype=won
                   |ected,rhel-6/freetype=affec |tfix,rhel-6/freetype=affect
                   |ted,rhel-7/freetype=affecte |ed,rhel-7/freetype=affected
                   |d,rhev-m-3/mingw-virt-viewe |,rhev-m-3/mingw-virt-viewer
                   |r=affected,fedora-all/freet |=affected,fedora-all/freety
                   |ype=affected,fedora-all/min |pe=affected,fedora-all/ming
                   |gw-freetype=affected,epel-7 |w-freetype=affected,epel-7/
                   |/mingw-freetype=affected    |mingw-freetype=affected



-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=YaAbczb3ck&a=cc_unsubscribe


More information about the fonts-bugs mailing list