Vulnerabilities > Freetype > Freetype > 2.1.7

DATE CVE VULNERABILITY TITLE RISK
2008-06-16 CVE-2008-1808 Numeric Errors vulnerability in Freetype
Multiple off-by-one errors in FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via (1) a crafted table in a Printer Font Binary (PFB) file or (2) a crafted SHC instruction in a TrueType Font (TTF) file, which triggers a heap-based buffer overflow.
network
low complexity
freetype CWE-189
7.5
2007-07-02 CVE-2007-3506 Remote Buffer Overflow vulnerability in FreeType Bitmap Font Handling
The ft_bitmap_assure_buffer function in src/base/ftbimap.c in FreeType 2.3.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors involving bitmap fonts, related to a "memory buffer overwrite bug."
network
low complexity
freetype
7.5
2006-05-30 CVE-2006-2661 Null Pointer Dereference vulnerability in multiple products
ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference.
network
low complexity
freetype debian canonical CWE-476
5.0