CVE-2011-3439

FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
Affected Products (NVD)
VendorProductVersion
appleiphone_os
𝑥
< 5.0.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
freetype
bookworm
2.12.1+dfsg-5+deb12u3
fixed
bullseye
2.10.4+dfsg-1+deb11u1
fixed
sid
2.13.3+dfsg-1
fixed
trixie
2.13.3+dfsg-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
freetype
hardy
Fixed 2.3.5-1ubuntu4.8.04.7
released
lucid
Fixed 2.3.11-1ubuntu2.5
released
maverick
Fixed 2.4.2-2ubuntu0.3
released
natty
Fixed 2.4.4-1ubuntu2.2
released
oneiric
Fixed 2.4.4-2ubuntu1.1
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libfreetype6
suse enterprise sap 12 SP5
2.6.3-7.15.1
fixed
suse enterprise server 12 SP4
2.6.3-7.15.1
fixed
suse enterprise server 12 SP5
2.6.3-7.15.1
fixed
libfreetype6-32bit
suse enterprise sap 12 SP5
2.6.3-7.15.1
fixed
suse enterprise server 12 SP4
2.6.3-7.15.1
fixed
suse enterprise server 12 SP5
2.6.3-7.15.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
freetype
RHEL 6
0:2.3.11-6.el6_1.8
fixed
freetype-demos
RHEL 6
0:2.3.11-6.el6_1.8
fixed
freetype-devel
RHEL 6
0:2.3.11-6.el6_1.8
fixed