Title : Dia Security Update Fixes FreeType Library Multiple Integer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2007-2328 CVE ID : CVE-2007-1351 - CVE-2007-2754 - CVE-2007-3408
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-06-26
Technical Description
Two vulnerabilities have been identified in Dia, which could be exploited by attackers to execute arbitrary code. These issues are caused by errors in FreeType. For additional information, see : VUPEN/ADV-2007-1894 - VUPEN/ADV-2007-1264