Vulnerabilities > Freetype > Freetype > 2.0.9

DATE CVE VULNERABILITY TITLE RISK
2008-06-16 CVE-2008-1808 Numeric Errors vulnerability in Freetype
Multiple off-by-one errors in FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via (1) a crafted table in a Printer Font Binary (PFB) file or (2) a crafted SHC instruction in a TrueType Font (TTF) file, which triggers a heap-based buffer overflow.
network
low complexity
freetype CWE-189
7.5
2007-07-02 CVE-2007-3506 Remote Buffer Overflow vulnerability in FreeType Bitmap Font Handling
The ft_bitmap_assure_buffer function in src/base/ftbimap.c in FreeType 2.3.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors involving bitmap fonts, related to a "memory buffer overwrite bug."
network
low complexity
freetype
7.5
2006-05-30 CVE-2006-2661 Null Pointer Dereference vulnerability in multiple products
ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference.
network
low complexity
freetype debian canonical CWE-476
5.0
2006-05-23 CVE-2006-0747 Numeric Errors vulnerability in Freetype
Integer underflow in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a font file with an odd number of blue values, which causes the underflow when decrementing by 2 in a context that assumes an even number of values.
network
low complexity
freetype CWE-189
5.0