CVE-2012-5669: Buffer Overflow
The bdfparseglyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5669?
CVE-2012-5669 has a severity that can lead to denial of service and potential execution of arbitrary code.
How do I fix CVE-2012-5669?
To fix CVE-2012-5669, update FreeType to version 2.4.11 or later where the issue is resolved.
Which versions of FreeType are affected by CVE-2012-5669?
CVE-2012-5669 affects FreeType versions prior to 2.4.11 and all versions in the 1.x and 2.0 series up to and including 2.4.10.
What impact does CVE-2012-5669 have on FreeType users?
The impact of CVE-2012-5669 on FreeType users includes the possibility of application crashes and exploitation of the vulnerability to execute arbitrary code.
Is CVE-2012-5669 classified as a critical vulnerability?
Yes, CVE-2012-5669 is classified as a critical vulnerability due to its ability to lead to denial of service and remote code execution.