Vulnerabilities > Freetype > Freetype > 2.4.9

DATE CVE VULNERABILITY TITLE RISK
2013-01-24 CVE-2012-5670 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Freetype
The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) via vectors related to BDF fonts and an ENCODING field with a negative value.
network
freetype CWE-119
4.3
2013-01-24 CVE-2012-5669 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Freetype
The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to BDF fonts and an incorrect calculation that triggers an out-of-bounds read.
network
freetype CWE-119
4.3
2013-01-24 CVE-2012-5668 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Freetype
FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to BDF fonts and the improper handling of an "allocation error" in the bdf_free_font function.
network
freetype CWE-119
4.3