CVE-2006-0747: Medium severity FreeType vulnerability
Published May 23, 2006
·Updated
Integer underflow in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a font file with an odd number of blue values, which causes the underflow when decrementing by 2 in a context that assumes an even number of values.
Affected Software
1 affected component
FreeType<=2.1
Remediation
Patch Available
Event History
May 23, 2006
CVE Published
10:06 AM
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-0747?
CVE-2006-0747 has a moderate severity level due to its potential to cause denial of service.
2
How do I fix CVE-2006-0747?
To fix CVE-2006-0747, update FreeType to version 2.2 or later.
3
What software is affected by CVE-2006-0747?
CVE-2006-0747 affects FreeType versions before 2.2.
4
What type of vulnerability is CVE-2006-0747?
CVE-2006-0747 is an integer underflow vulnerability.
5
Can CVE-2006-0747 be exploited remotely?
Yes, CVE-2006-0747 can be exploited remotely through malicious font files.