CVE-2008-1806
CVE-2008-1806
Integer overflow in FreeType2 before 2.3.6 allows context-dependent attackers to execute arbitrary code via a crafted set of 16-bit length values within the Private dictionary table in a Printer Font Binary (PFB) file, which triggers a heap-based buffer overflow.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=715http://lists.apple.com/archives/security-announce//2008/Sep/msg00003.htmlhttp://lists.apple.com/archives/security-announce//2008/Sep/msg00004.htmlhttp://lists.apple.com/archives/security-announce/2009/Feb/msg00000.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2008-August/064118.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-07/msg00001.htmlhttp://secunia.com/advisories/30600http://secunia.com/advisories/30721http://secunia.com/advisories/30740http://secunia.com/advisories/30766http://secunia.com/advisories/30819http://secunia.com/advisories/30821