Title : Ubuntu Security Update Fixes FreeType Multiple Integer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2006-2226 CVE ID : CVE-2006-0747 - CVE-2006-1861 - CVE-2006-2493 - CVE-2006-2661
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-06-08
Technical Description
Ubuntu has released updated packages to address multiple vulnerabilities identified in FreeType. These flaws could be exploited by attackers to execute arbitrary commands. For additional information, see : VUPEN/ADV-2006-1868
Upgrade to libfreetype6 version 2.1.7-2.3ubuntu0.1 (for Ubuntu 5.04), version 2.1.7-2.4ubuntu1.1 (for Ubuntu 5.10), or version 2.1.10-1ubuntu2.1 (for Ubuntu 6.06 LTS). References