ISOMAN

CVE

CVE-2014-9675

bdf/bdflib.c in FreeType before 2.5.4 identifies property names by only verifying that an initial substring is present, which allows remote attackers to discover heap pointer values and bypass the ASLR protection mechanism via a crafted BDF font.

Severity
MEDIUM
CVSS
5
Published
Modified

Linked Releases

References

  1. http://advisories.mageia.org/MGASA-2015-0083.html
  2. http://code.google.com/p/google-security-research/issues/detail?id=151
  3. http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=2c4832d30939b45c05757f0a05128ce64c4cacc7
  4. http://lists.fedoraproject.org/pipermail/package-announce/2015-February/150148.html
  5. http://lists.fedoraproject.org/pipermail/package-announce/2015-February/150162.html
  6. http://lists.opensuse.org/opensuse-updates/2015-03/msg00091.html
  7. http://rhn.redhat.com/errata/RHSA-2015-0696.html
  8. http://www.debian.org/security/2015/dsa-3188
  9. http://www.mandriva.com/security/advisories?name=MDVSA-2015:055
  10. http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html
  11. http://www.securityfocus.com/bid/72986
  12. http://www.ubuntu.com/usn/USN-2510-1
  13. http://www.ubuntu.com/usn/USN-2739-1
  14. https://security.gentoo.org/glsa/201503-05
  15. https://source.android.com/security/bulletin/2016-11-01.html
  16. http://advisories.mageia.org/MGASA-2015-0083.html
  17. http://code.google.com/p/google-security-research/issues/detail?id=151
  18. http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=2c4832d30939b45c05757f0a05128ce64c4cacc7
  19. http://lists.fedoraproject.org/pipermail/package-announce/2015-February/150148.html
  20. http://lists.fedoraproject.org/pipermail/package-announce/2015-February/150162.html