CVE Vulnerabilities

CVE-2007-2754

Published: May 17, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer signedness error in truetype/ttgload.c in Freetype 2.3.4 and earlier might allow remote attackers to execute arbitrary code via a crafted TTF image with a negative n_points value, which leads to an integer overflow and heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
FreetypeFreetype*2.3.4 (including)
Red Hat Enterprise Linux 2.1RedHatfreetype-0:2.0.3-10.el21*
Red Hat Enterprise Linux 2.1RedHatfreetype-0:2.0.3-17.el21*
Red Hat Enterprise Linux 3RedHatfreetype-0:2.1.4-7.el3*
Red Hat Enterprise Linux 3RedHatfreetype-0:2.1.4-12.el3*
Red Hat Enterprise Linux 4RedHatfreetype-0:2.1.9-6.el4*
Red Hat Enterprise Linux 4RedHatfreetype-0:2.1.9-10.el4.7*
Red Hat Enterprise Linux 5RedHatfreetype-0:2.2.1-19.el5*
FreetypeUbuntudapper*
FreetypeUbuntudevel*
FreetypeUbuntuedgy*
FreetypeUbuntufeisty*
Openoffice.org-l10nUbuntudevel*

References