Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-2241
HistoryMar 18, 2014 - 5:04 p.m.

Design/Logic Flaw

2014-03-1817:04:00
PRIOn knowledge base
www.prio-n.com
5

6.9 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.2%

The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to cause a denial of service (assertion failure), as demonstrated by a crafted ttf file.

6.9 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.2%