USN-643-1: FreeType vulnerabilities
11 September 2008
- freetype -
Multiple flaws were discovered in the PFB and TTF font handling code
in freetype. If a user were tricked into using a specially crafted
font file, a remote attacker could execute arbitrary code with user
privileges or cause the application linked against freetype to crash,
leading to a denial of service.
The problem can be corrected by updating your system to the following package versions:
After a standard system upgrade you need to restart your session to
effect the necessary changes.