VDB
CVE-2006-2661
CVE-2006-2661
PUBLISHED
CVSS 5 MEDIUM
ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference.
EPSS 16.17% · 96.6th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
16.17%
96.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| canonical | ubuntu_linux | 6.06, 5.04, 5.10 |
| debian | debian_linux | 3.1, 3.0 |
| freetype | freetype | 0 |
| n/a | n/a | n/a |
Timeline
- May 30, 2006 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 31, 2023 EPSS Score
References
- SUSE-SA:2006:037 vendor-advisory
- 18329 vdb
- RHSA-2006:0500 vendor-advisory
- 20060701-01-U vendor-advisory
- 102705 vendor-advisory
- USN-291-1 vendor-advisory
- 20638 third-party-advisory
- 1016520 vdb
- ADV-2007-0381 vdb
- https://issues.rpath.com/browse/RPL-429 url
- https://nvd.nist.gov/vuln/detail/CVE-2006-2661 advisory
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=183676 url
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11692 url
- https://usn.ubuntu.com/291-1 url
- http://secunia.com/advisories/20591 url
- http://secunia.com/advisories/20791 url
- http://secunia.com/advisories/21135 url
- http://secunia.com/advisories/23939 url
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:099 url
- http://www.securityfocus.com/archive/1/436836/100/0/threaded url
…and 6 more