Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-3467
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-3467

Description:
Integer overflow in FreeType before 2.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PCF file, as demonstrated by the Red Hat bad1.pcf test file, due to a partial fix of CVE-2006-1861.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-341-1
  http://www.ubuntu.com/usn/usn-324-1

TRUSTIX
  http://www.trustix.org/errata/2006/0052/

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00006.html
  http://lists.suse.com/archive/suse-security-announce/2006-Aug/0002.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-102705-1

ST
  1016522

SGI

SAID
  Secunia Advisory: SA22332
  Secunia Advisory: SA22027
  Secunia Advisory: SA21836
  Secunia Advisory: SA21701
  Secunia Advisory: SA21626
  Secunia Advisory: SA21606
  Secunia Advisory: SA21798
  Secunia Advisory: SA21793
  Secunia Advisory: SA21567
  Secunia Advisory: SA21566
  Secunia Advisory: SA21285
  Secunia Advisory: SA21135
  Secunia Advisory: SA21232
  Secunia Advisory: SA21144
  Secunia Advisory: SA21062
  Secunia Advisory: SA22907
  Secunia Advisory: SA22875
  Secunia Advisory: SA23400
  Secunia Advisory: SA23939
  Secunia Advisory: SA27271
  Secunia Advisory: SA33937

REDHAT
  http://www.redhat.com/support/errata/RHSA-2006-0634.html
  http://www.redhat.com/support/errata/RHSA-2006-0635.html
  http://www.redhat.com/support/errata/RHSA-2006-0500.html

MISC
  http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=190593

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2006:148
  http://www.mandriva.com/security/advisories?name=MDKSA-2006:129

GENTOO
  http://security.gentoo.org/glsa/glsa-200609-04.xml

DEBIAN
  http://www.debian.org/security/2006/dsa-1178
  http://www.debian.org/security/2006/dsa-1193

CONFIRM
  http://support.apple.com/kb/HT3438
  http://support.avaya.com/elmodocs2/security/ASA-2006-284.htm
  http://www.vmware.com/download/esx/esx-213-200610-patch.html
  http://www.vmware.com/download/esx/esx-254-200610-patch.html
  http://www.vmware.com/download/esx/esx-202-200610-patch.html
  http://support.avaya.com/elmodocs2/security/ASA-2006-186.htm
  http://support.avaya.com/elmodocs2/security/ASA-2006-176.htm

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/451426/100/200/threaded
  http://www.securityfocus.com/archive/1/archive/1/451404/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/451419/100/200/threaded
  http://www.securityfocus.com/archive/1/archive/1/451417/100/200/threaded
  http://www.securityfocus.com/archive/1/archive/1/444318/100/0/threaded

APPLE
  http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html


Return to the previous page.