REDHAT-BUG-800585: Low severity GNU FreeType vulnerability
An out-of heap-based buffer read flaw was found in the way Type42 font parser of the FreeType font rendering engine performed parsing of certain special font name table (SFNT) strings. A remote attacker could provide a specially-crafted font file, which once opened in an application linked against FreeType would lead to that application crash.
Upstream bug report: [1] https://savannah.nongnu.org/bugs/?35602
Upstream patch: [2] http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=82365c0dead99dd119d9e7117cf4f36ce1d1cbe1
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-800585?
The severity of REDHAT-BUG-800585 is classified as a medium to high risk due to potential exploitation by remote attackers.
How do I fix REDHAT-BUG-800585?
To fix REDHAT-BUG-800585, it is recommended to update to the latest version of the GNU FreeType library that addresses the vulnerability.
What causes REDHAT-BUG-800585?
REDHAT-BUG-800585 is caused by a flaw in the Type42 font parser within the FreeType font rendering engine when parsing certain special font name table strings.
Can REDHAT-BUG-800585 be exploited remotely?
Yes, REDHAT-BUG-800585 can be exploited remotely if an attacker delivers a specially crafted font file to a vulnerable application.
What applications are affected by REDHAT-BUG-800585?
Applications linked against the affected version of the GNU FreeType library are vulnerable to REDHAT-BUG-800585 when handling certain font files.