CVE-2015-9382

Published: 03 September 2019

FreeType before 2.6.1 has a buffer over-read in skip_comment in psaux/psobjs.c because ps_parser_skip_PS_token is mishandled in an FT_New_Memory_Face operation.

Priority

Medium

CVSS 3 base score: 6.5

Status

Package Release Status
freetype
Launchpad, Ubuntu, Debian
Upstream
Released (2.6.1-0.1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(2.8.1-2ubuntu2)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(2.6.1-0.1)
Ubuntu 14.04 ESM (Trusty Tahr)
Released (2.5.2-1ubuntu2.8+esm1)