Oracle

Solaris

561 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 3.47%
  • Veröffentlicht 08.02.2015 11:59:32
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Off-by-one error in the pcf_get_properties function in pcf/pcfread.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PCF file with a 0xffffffff size value th...

Exploit
  • EPSS 4.18%
  • Veröffentlicht 08.02.2015 11:59:31
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple integer signedness errors in the pcf_get_encodings function in pcf/pcfread.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (integer overflow, NULL pointer dereference, and application crash) via a crafted PCF f...

Exploit
  • EPSS 3.85%
  • Veröffentlicht 08.02.2015 11:59:30
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Multiple integer overflows in sfnt/ttcmap.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (out-of-bounds read or memory corruption) or possibly have unspecified other impact via a crafted cmap SFNT table.

Exploit
  • EPSS 4.23%
  • Veröffentlicht 08.02.2015 11:59:28
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The tt_sbit_decoder_init function in sfnt/ttsbit.c in FreeType before 2.5.4 proceeds with a count-to-size association without restricting the count value, which allows remote attackers to cause a denial of service (integer overflow and out-of-bounds ...

Exploit
  • EPSS 4.27%
  • Veröffentlicht 08.02.2015 11:59:26
  • Zuletzt bearbeitet 06.05.2026 22:30:45

FreeType before 2.5.4 does not check for the end of the data during certain parsing actions, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted Type42 font, related ...

Exploit
  • EPSS 5.06%
  • Veröffentlicht 08.02.2015 11:59:25
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The tt_cmap4_validate function in sfnt/ttcmap.c in FreeType before 2.5.4 validates a certain length field before that field's value is completely calculated, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly ...

Exploit
  • EPSS 5.06%
  • Veröffentlicht 08.02.2015 11:59:22
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a missing ENDCHAR record, which allows remote attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact...

Exploit
  • EPSS 7.69%
  • Veröffentlicht 08.02.2015 11:59:21
  • Zuletzt bearbeitet 06.05.2026 22:30:45

cff/cf2intrp.c in the CFF CharString interpreter in FreeType before 2.5.4 proceeds with additional hints after the hint mask has been computed, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer o...

Exploit
  • EPSS 5.06%
  • Veröffentlicht 08.02.2015 11:59:20
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The tt_face_load_kern function in sfnt/ttkern.c in FreeType before 2.5.4 enforces an incorrect minimum table length, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a craft...

Exploit
  • EPSS 5.06%
  • Veröffentlicht 08.02.2015 11:59:19
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The tt_face_load_hdmx function in truetype/ttpload.c in FreeType before 2.5.4 does not establish a minimum record size, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a cr...