FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via an invalid "number of axes" field in a Printer Font Binary (PFB) file, which triggers a free of arbitrary memory locations, leading to memory corruption.
CVSS Details
- CVSS 3.1 Base Score: 6.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx X11 | — | Apply OS X security update 2009-001 | Dec 16, 2011 | Jun 16, 2008 |
| Debian | — | Upgrade freetype | Jul 30, 2024 | Jun 16, 2008 |
| Freebsd | — | Upgrade freetype2 | Dec 10, 2025 | Jul 3, 2008 |
| Gentoo Linux | — | Upgrade app-emulation/vmware-player.Upgrade app-emulation/vmware-server.Upgrade media-libs/freetype.Upgrade app-emulation/vmware-workstation. | Oct 30, 2017 | Jun 16, 2008 |
| Oracle_linux | — | Upgrade freetypeUpgrade freetype-demosUpgrade freetype-devel | Oct 16, 2024 | Jun 16, 2008 |
| Suse | — | Upgrade freetype2-32bitUpgrade freetype2-devel-64bitUpgrade freetype2Upgrade freetype2-64bitUpgrade freetype2-x86Upgrade freetype2-develUpgrade suse-releaseUpgrade freetype2-devel-32bit | Feb 17, 2015 | Jun 16, 2008 |
| Ubuntu | — | Upgrade libfreetype6 | Nov 8, 2024 | Jun 16, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub