Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23324
HistoryApr 10, 2020 - 12:23 a.m.

Arbitrary Code Execution

2020-04-1000:23:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

EPSS

0.028

Percentile

90.7%

freetype is vulnerable to arbitrary code execution. The vulnerability exists as multiple flaws were discovered in FreeType’s Printer Font Binary (PFB) font-file format parser. If a user loaded a carefully crafted font-file with a program linked against FreeType, it could cause the application to crash, or possibly execute arbitrary code.

References