ASA-202505-11 - log back

ASA-202505-11 edited at 20 May 2025 19:19:19
ASA-202505-11 edited at 20 May 2025 17:07:12
Impact
- A remote attacker can exploit an out-of-bounds write in FreeType to execute arbitrary code by tricking a vulnerable application into loading a specially crafted TrueType GX or variable font file. This vulnerability may allow full compromise of applications using FreeType for font rendering and may have been exploited in the wild.
+ A remote attacker that is able to load a specially crafted font file is able to execute arbitrary code on the affected host.
ASA-202505-11 edited at 19 May 2025 23:23:01
Impact
+ A remote attacker can exploit an out-of-bounds write in FreeType to execute arbitrary code by tricking a vulnerable application into loading a specially crafted TrueType GX or variable font file. This vulnerability may allow full compromise of applications using FreeType for font rendering and may have been exploited in the wild.
ASA-202505-11 created at 19 May 2025 23:22:08