Search Results (Refine Search)
- CPE Product Version: cpe:/a:freetype:freetype:2.4.5
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2012-1127 |
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted glyph or bitmap data in a BDF font. Published: April 25, 2012; 6:10:17 AM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |
CVE-2012-1126 |
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via crafted property data in a BDF font. Published: April 25, 2012; 6:10:17 AM -0400 |
V3.x:(not available) V2.0: 10.0 HIGH |
CVE-2011-0226 |
Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Type 1 font in a PDF document, as exploited in the wild in July 2011. Published: July 19, 2011; 6:55:00 PM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |