Redhat

Enterprise Linux Workstation

1845 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 5.12%
  • Published 08.02.2015 11:59:35
  • Last modified 12.04.2025 10:46:40

The Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 proceeds with adding to length values without validating the original values, which allows remote attackers to cause a denial of service (integer overflow and heap-based bu...

Exploit
  • EPSS 4.22%
  • Published 08.02.2015 11:59:34
  • Last modified 12.04.2025 10:46:40

Integer signedness error in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted Mac fo...

Exploit
  • EPSS 3.22%
  • Published 08.02.2015 11:59:32
  • Last modified 12.04.2025 10:46:40

Off-by-one error in the pcf_get_properties function in pcf/pcfread.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PCF file with a 0xffffffff size value th...

Exploit
  • EPSS 5.05%
  • Published 08.02.2015 11:59:31
  • Last modified 12.04.2025 10:46:40

Multiple integer signedness errors in the pcf_get_encodings function in pcf/pcfread.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (integer overflow, NULL pointer dereference, and application crash) via a crafted PCF f...

Exploit
  • EPSS 2.44%
  • Published 08.02.2015 11:59:30
  • Last modified 12.04.2025 10:46:40

Multiple integer overflows in sfnt/ttcmap.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (out-of-bounds read or memory corruption) or possibly have unspecified other impact via a crafted cmap SFNT table.

Exploit
  • EPSS 2.03%
  • Published 08.02.2015 11:59:29
  • Last modified 12.04.2025 10:46:40

sfnt/ttload.c in FreeType before 2.5.4 proceeds with offset+length calculations without restricting the values, which allows remote attackers to cause a denial of service (integer overflow and out-of-bounds read) or possibly have unspecified other im...

Exploit
  • EPSS 1.84%
  • Published 08.02.2015 11:59:28
  • Last modified 12.04.2025 10:46:40

The tt_sbit_decoder_init function in sfnt/ttsbit.c in FreeType before 2.5.4 proceeds with a count-to-size association without restricting the count value, which allows remote attackers to cause a denial of service (integer overflow and out-of-bounds ...

Exploit
  • EPSS 1.15%
  • Published 08.02.2015 11:59:26
  • Last modified 12.04.2025 10:46:40

FreeType before 2.5.4 does not check for the end of the data during certain parsing actions, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted Type42 font, related ...

Exploit
  • EPSS 2.61%
  • Published 08.02.2015 11:59:25
  • Last modified 12.04.2025 10:46:40

The tt_cmap4_validate function in sfnt/ttcmap.c in FreeType before 2.5.4 validates a certain length field before that field's value is completely calculated, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly ...

Exploit
  • EPSS 4.95%
  • Published 08.02.2015 11:59:23
  • Last modified 12.04.2025 10:46:40

type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without triggering an error, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a craf...