Title : Debian Security Update Fixes FreeType Multiple Integer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2006-2264 CVE ID : CVE-2006-0747 - CVE-2006-1861 - CVE-2006-2493 - CVE-2006-2661
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-06-12
Technical Description
Debian has released updated packages to address multiple vulnerabilities identified in FreeType. These flaws could be exploited by attackers to execute arbitrary commands. For additional information, see : VUPEN/ADV-2006-1868
Debian GNU/Linux old-stable (woody) - Upgrade to version 2.0.9-1woody1
Debian GNU/Linux stable (sarge) - Upgrade to version 2.1.7-2.5
Debian GNU/Linux unstable (sid) - A fix will be available soon References