Title : FreeType "TT_Load_Simple_Glyph()" TTF Image Handling Integer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-1894 CVE ID : CVE-2007-2754
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-05-21
Technical Description
A vulnerability has been identified in FreeType, which could be exploited by attackers to execute arbitrary code. This issue is caused by an integer overflow error in the "TT_Load_Simple_Glyph()" [ttgload.c] function when processing TTF images with a negative number of points in contours, which could be exploited by attackers to crash an application linked against a vulnerable library or compromise a vulneable system via a specially crafted TTF image.