Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.71283
Kategorie:FreeBSD Local Security Checks
Titel:FreeBSD Ports: freetype2
Zusammenfassung:The remote host is missing an update to the system; as announced in the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update to the system
as announced in the referenced advisory.

Vulnerability Insight:
The following package is affected: freetype2

CVE-2012-1126
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4
and other products, allows remote attackers to cause a denial of
service (invalid heap read operation and memory corruption) or
possibly execute arbitrary code via crafted property data in a BDF
font.
CVE-2012-1127
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4
and other products, allows remote attackers to cause a denial of
service (invalid heap read operation and memory corruption) or
possibly execute arbitrary code via crafted glyph or bitmap data in a
BDF font.
CVE-2012-1128
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4
and other products, allows remote attackers to cause a denial of
service (NULL pointer dereference and memory corruption) or possibly
execute arbitrary code via a crafted TrueType font.
CVE-2012-1129
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4
and other products, allows remote attackers to cause a denial of
service (invalid heap read operation and memory corruption) or
possibly execute arbitrary code via a crafted SFNT string in a Type 42
font.
CVE-2012-1130
FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4
and other products, allows remote attackers to cause a denial of
service (invalid heap read operation and memory corruption) or
possibly execute arbitrary code via crafted property data in a PCF
font.

Text truncated. Please see the references for more information.

Solution:
Update your system with the appropriate patches or
software upgrades.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-1126
1026765
http://www.securitytracker.com/id?1026765
48508
http://secunia.com/advisories/48508
48758
http://secunia.com/advisories/48758
48797
http://secunia.com/advisories/48797
48822
http://secunia.com/advisories/48822
48918
http://secunia.com/advisories/48918
48951
http://secunia.com/advisories/48951
48973
http://secunia.com/advisories/48973
52318
http://www.securityfocus.com/bid/52318
APPLE-SA-2012-09-19-1
http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html
GLSA-201204-04
http://security.gentoo.org/glsa/glsa-201204-04.xml
MDVSA-2012:057
http://www.mandriva.com/security/advisories?name=MDVSA-2012:057
RHSA-2012:0467
http://rhn.redhat.com/errata/RHSA-2012-0467.html
SUSE-SU-2012:0483
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00002.html
SUSE-SU-2012:0484
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00003.html
SUSE-SU-2012:0521
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00015.html
USN-1403-1
http://www.ubuntu.com/usn/USN-1403-1
[oss-security] 20120306 Re: CVE Request -- FreeType: Multiple security flaws to be fixed in v2.4.9
http://www.openwall.com/lists/oss-security/2012/03/06/16
http://support.apple.com/kb/HT5503
http://www.mozilla.org/security/announce/2012/mfsa2012-21.html
https://bugzilla.mozilla.org/show_bug.cgi?id=733512
https://bugzilla.redhat.com/show_bug.cgi?id=800581
openSUSE-SU-2012:0489
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00004.html
Common Vulnerability Exposure (CVE) ID: CVE-2012-1127
https://bugzilla.redhat.com/show_bug.cgi?id=800583
Common Vulnerability Exposure (CVE) ID: CVE-2012-1128
https://bugzilla.redhat.com/show_bug.cgi?id=800584
Common Vulnerability Exposure (CVE) ID: CVE-2012-1129
https://bugzilla.redhat.com/show_bug.cgi?id=800585
Common Vulnerability Exposure (CVE) ID: CVE-2012-1130
https://bugzilla.redhat.com/show_bug.cgi?id=800587
Common Vulnerability Exposure (CVE) ID: CVE-2012-1131
https://bugzilla.redhat.com/show_bug.cgi?id=800589
Common Vulnerability Exposure (CVE) ID: CVE-2012-1132
https://bugzilla.redhat.com/show_bug.cgi?id=800590
Common Vulnerability Exposure (CVE) ID: CVE-2012-1133
48300
http://secunia.com/advisories/48300
DSA-2428
http://www.debian.org/security/2012/dsa-2428
https://bugzilla.redhat.com/show_bug.cgi?id=800591
Common Vulnerability Exposure (CVE) ID: CVE-2012-1134
https://bugzilla.redhat.com/show_bug.cgi?id=800592
Common Vulnerability Exposure (CVE) ID: CVE-2012-1135
https://bugzilla.redhat.com/show_bug.cgi?id=800593
Common Vulnerability Exposure (CVE) ID: CVE-2012-1136
https://bugzilla.redhat.com/show_bug.cgi?id=800594
Common Vulnerability Exposure (CVE) ID: CVE-2012-1137
https://bugzilla.redhat.com/show_bug.cgi?id=800595
Common Vulnerability Exposure (CVE) ID: CVE-2012-1138
https://bugzilla.redhat.com/show_bug.cgi?id=800597
Common Vulnerability Exposure (CVE) ID: CVE-2012-1139
https://bugzilla.redhat.com/show_bug.cgi?id=800598
Common Vulnerability Exposure (CVE) ID: CVE-2012-1140
https://bugzilla.redhat.com/show_bug.cgi?id=800600
Common Vulnerability Exposure (CVE) ID: CVE-2012-1141
https://bugzilla.redhat.com/show_bug.cgi?id=800602
Common Vulnerability Exposure (CVE) ID: CVE-2012-1142
https://bugzilla.redhat.com/show_bug.cgi?id=800604
Common Vulnerability Exposure (CVE) ID: CVE-2012-1143
https://bugzilla.redhat.com/show_bug.cgi?id=800606
Common Vulnerability Exposure (CVE) ID: CVE-2012-1144
https://bugzilla.redhat.com/show_bug.cgi?id=800607
CopyrightCopyright (C) 2012 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.