Back

HIGH

freetype: memory corruption and application crash (reported against firefox on android)

Published Oct 12, 2012

Description

The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.

Affected products

Remediation

Red Hat statement

Not Vulnerable. This issue does not affect the version of freetype as shipped with Red Hat Enterprise Linux 5 and 6.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 12, 2012
Updated Aug 6, 2024
Reserved Aug 8, 2012
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Oct 11, 2012