Ubuntu Security Notice (C) 2009-2014 Canonical, Inc. / NASL script (C) 2009-2014 Tenable Network Security, Inc.
The remote Ubuntu host is missing one or more security-related patches.
Tavis Ormandy discovered that FreeType did not correctly handle
certain large values in font files. If a user were tricked into using
a specially crafted font file, a remote attacker could execute
arbitrary code with user privileges.
Update the affected freetype2-demos, libfreetype6 and / or
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.7
Public Exploit Available : false