Rapid7

vulnerability

Oracle Solaris 11: CVE-2015-9383: Vulnerability in FreeType

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Sep 3, 2019
Added
Oct 16, 2019
Modified
Feb 1, 2022

Description

FreeType before 2.6.2 has a heap-based buffer over-read in tt_cmap14_validate in sfnt/ttcmap.c.

Solutions

oracle-solaris-11-3-upgrade-system-library-fontconfig-2-12-1-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-system-library-freetype-2-2-6-3-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libx11-1-6-2-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxfixes-5-0-1-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxi-1-7-2-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxrandr-1-4-2-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxrender-0-9-8-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxtst-1-2-2-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxv-1-0-10-0-175-3-15-0-3-1517oracle-solaris-11-3-upgrade-x11-library-libxvmc-1-0-8-0-175-3-15-0-3-1517
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.