REDHAT-BUG-621907: Buffer Overflow
A stack-based buffer overflow was found in the way FreeType font rendering engine processed certain Adobe Type 1 Mac Font File (LWFN) fonts. An attacker could use this flaw to create a specially-crafted font file that, when opened, would cause an application linked against libfreetype to crash, or, possibly execute arbitrary code.
Upstream bug report: [1] https://savannah.nongnu.org/bugs/?30658
Public reproducer: [2] http://alt.swiecki.net/j/f/sigsegv31.ttf
Upstream changeset: [3] http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=81f3472c0ba7b8f6466e2e214fa8c1c17fade975
Credit: Robert Swiecki
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-621907?
The severity of REDHAT-BUG-621907 is rated high, with a score of 7.
How do I fix REDHAT-BUG-621907?
To fix REDHAT-BUG-621907, you should update to the latest version of the GNU FreeType library that addresses this vulnerability.
What is the risk associated with REDHAT-BUG-621907?
The risk associated with REDHAT-BUG-621907 includes the potential for a stack-based buffer overflow that could cause applications linked against libfreetype to crash.
What vulnerability type is identified in REDHAT-BUG-621907?
REDHAT-BUG-621907 involves a buffer overflow vulnerability specifically affecting the FreeType font rendering engine.
Can REDHAT-BUG-621907 be exploited remotely?
Yes, an attacker could exploit REDHAT-BUG-621907 by crafting a malicious font file that could be opened by an application, leading to a crash or other unintended behavior.