[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2020-1348 --- freetype

ID: oval:org.secpod.oval:def:1601114Date: (C)2020-03-17   (M)2022-06-07
Class: PATCHFamily: unix




FreeType before 2.6.1 has a heap-based buffer over-read in T1_Get_Private_Dict in type1/t1parse.c. FreeType before 2.6.1 has a buffer over-read in skip_comment in psaux/psobjs.c because ps_parser_skip_PS_token is mishandled in an FT_New_Memory_Face operation

Platform:
Amazon Linux AMI
Product:
freetype
Reference:
ALAS-2020-1348
CVE-2015-9382
CVE-2015-9381
CVE    2
CVE-2015-9381
CVE-2015-9382
CPE    56
cpe:/o:amazon:linux
cpe:/a:freetype:freetype:2.3.9
cpe:/a:freetype:freetype:2.1.7
cpe:/a:freetype:freetype:2.3.5
...

© SecPod Technologies