REDHAT-BUG-800606: Divide by Zero
An integer divide by zero was found in the way FreeType font rendering engine performed arithmetic computations for certain fonts. A remote attacker could provide a specially-crafted font file, which once opened in an application linked against FreeType would lead to that application crash.
Upstream bug report: [1] https://savannah.nongnu.org/bugs/?35660
Upstream patch: [2] http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=ba67957d5ead443f4b6b31805d6e780d54361ca4
Acknowledgements:
Red Hat would like to thank Mateusz Jurczyk of the Google Security Team for reporting this issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-800606?
The severity of REDHAT-BUG-800606 is considered high due to the potential for remote denial of service.
How do I fix REDHAT-BUG-800606?
To fix REDHAT-BUG-800606, you should update FreeType to the latest version where the vulnerability has been patched.
What causes the vulnerability REDHAT-BUG-800606?
The vulnerability REDHAT-BUG-800606 is caused by an integer divide by zero error in the FreeType font rendering engine.
Can REDHAT-BUG-800606 lead to data exposure?
No, REDHAT-BUG-800606 primarily leads to application crashes rather than data exposure.
Who is affected by REDHAT-BUG-800606?
Any application that uses the FreeType library and is exposed to malicious specially-crafted font files is affected by REDHAT-BUG-800606.