AVG-251 log
| Package | freetype2 |
| Status | Fixed |
| Severity | High |
| Type | arbitrary code execution |
| Affected | 2.7-2 |
| Fixed | 2.7.1-1 |
| Current | 2.14.1-1 [extra] |
| Ticket | None |
| Created | Fri Apr 21 07:49:17 2017 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2016-10328 | High | No | Arbitrary code execution | FreeType 2 before 2016-12-16 (2.7.1) has an out-of-bounds write caused by a heap-based buffer overflow related to the cff_parser_run function in cff/cffparse.c. |