CVE-2006-2661
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 16%
from disclosure to weapon9 days
Published on NVDMay 30
1st PoC+9d
exploitation probability
16%top 3% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/27993⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
ftp://patches.sgi.com/support/free/security/advisories/20060701-01-Uhttp://lists.suse.com/archive/suse-security-announce/2006-Jun/0012.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=183676http://secunia.com/advisories/20525http://secunia.com/advisories/20591http://secunia.com/advisories/20638http://secunia.com/advisories/20791http://secunia.com/advisories/21062http://secunia.com/advisories/21135http://secunia.com/advisories/21385http://secunia.com/advisories/21701http://secunia.com/advisories/23939