GCVE-VVD-MAGEIA-2017-85
Advisory Published
Vulnetix · Advisory published October 5, 2017
The parse_charstrings function in type1/t1load.c in FreeType 2 did not ensure that a font contains a glyph name, which could allow remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a crafted file (CVE-2016-10244).

Affected Products

VendorProductVersionsPlatforms
Mageiatexstudio0 (affected), 2.12.6-1.mga6 (unaffected)
Mageiafreetype20 (affected), 2.5.4-2.1.mga5 (unaffected), 0 (affected), 2.5.4-2.1.mga5.tainted (unaffected), 0 (affected), 2.5.4-2.1.mga5 (unaffected), 0 (affected), 2.5.4-2.1.mga5.tainted (unaffected)

Aliases

Transitive aliases

References

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.