PublicDateAtUSN: 2015-02-08 Candidate: CVE-2014-9658 PublicDate: 2015-02-08 11:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9658 https://ubuntu.com/security/notices/USN-2510-1 Description: The tt_face_load_kern function in sfnt/ttkern.c in FreeType before 2.5.4 enforces an incorrect minimum table length, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted TrueType font. Ubuntu-Description: Notes: Bugs: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=777656 http://code.google.com/p/google-security-research/issues/detail?id=194 http://savannah.nongnu.org/bugs/?43672 Priority: medium Discovered-by: Mateusz Jurczyk Assigned-to: mdeslaur CVSS: Patches_freetype: upstream: http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=f70d9342e65cd2cb44e9f26b6d7edeedf191fc6c upstream_freetype: released (2.5.4) lucid_freetype: released (2.3.11-1ubuntu2.8) precise_freetype: released (2.4.8-1ubuntu2.2) trusty_freetype: released (2.5.2-1ubuntu2.4) trusty/esm_freetype: released (2.5.2-1ubuntu2.4) utopic_freetype: released (2.5.2-2ubuntu1.1) devel_freetype: released (2.5.2-2ubuntu3)