CVE-2011-3439
EPSS 8.3%freetype - missing input sanitising
Published: 11/11/2011Modified: 4/28/2026
Description
FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.
Affected packages (2)
- Debian/freetypefrom 0, < 2.4.8-1
- Debian/freetypefrom 0, < 2.3.7-2+lenny8