Your submission was sent successfully! Close

CVE-2014-9659

Published: 8 February 2015

cff/cf2intrp.c in the CFF CharString interpreter in FreeType before 2.5.4 proceeds with additional hints after the hint mask has been computed, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted OpenType font. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2240.

Priority

Medium

Status

Package Release Status
freetype
Launchpad, Ubuntu, Debian
lucid Not vulnerable
(code not present)
precise Not vulnerable
(code not present)
trusty
Released (2.5.2-1ubuntu2.4)
upstream
Released (2.5.4)
utopic
Released (2.5.2-2ubuntu1.1)
Patches:
upstream: http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=2cdc4562f873237f1c77d43540537c7a721d3fd8
upstream: http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=f89396cb6284954ff98b5dcbfc38e144deccdc83