4.3
CVSSv2

CVE-2010-3053

Published: 19/08/2010 Updated: 26/01/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

bdf/bdflib.c in FreeType prior to 2.4.2 allows remote malicious users to cause a denial of service (application crash) via a crafted BDF font file, related to an attempted modification of a value in a static string.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freetype freetype 2.0.6

freetype freetype 2.0.9

freetype freetype 2.1

freetype freetype 2.1.8

freetype freetype 1.3.1

freetype freetype 2.1.7

freetype freetype 2.3.0

freetype freetype 2.3.1

freetype freetype 2.3.8

freetype freetype 2.3.9

freetype freetype 2.1.5

freetype freetype 2.1.6

freetype freetype 2.2.1

freetype freetype 2.2.10

freetype freetype 2.3.6

freetype freetype 2.3.7

freetype freetype 2.1.9

freetype freetype 2.3.2

freetype freetype 2.3.3

freetype freetype 2.3.10

freetype freetype 2.3.11

freetype freetype 2.3.12

freetype freetype 2.1.3

freetype freetype 2.1.4

freetype freetype 2.1.10

freetype freetype 2.2.0

freetype freetype 2.3.4

freetype freetype 2.3.5

freetype freetype 2.4.0

freetype freetype

Vendor Advisories

Several vulnerabilities have been discovered in the FreeType font library The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2010-1797 Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings function in the CFF Type2 CharStrings interpreter in cff/cffgloadc in FreeType allow remote at ...