Unspecified vulnerability in FreeType 2.3.9, and other versions before 2.4.2, allows remote attackers to cause a denial of service via vectors involving nested Standard Encoding Accented Character (aka seac) calls, related to psaux.h, cffgload.c, cffgload.h, and t1decode.c.
| Software | From | Fixed in |
|---|---|---|
| freetype / freetype | 2.4.0 | 2.4.0.x |
| freetype / freetype | 2.3.10 | 2.3.10.x |
| freetype / freetype | 2.4.1 | 2.4.1.x |
| freetype / freetype | 2.3.11 | 2.3.11.x |
| freetype / freetype | 2.3.12 | 2.3.12.x |
| freetype / freetype | 2.3.9 | 2.3.9.x |