NULL Pointer Dereference in FreeType 2.9: DoS Vulnerability

NULL Pointer Dereference in FreeType 2.9: DoS Vulnerability

CVE-2018-6942 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

An issue was discovered in FreeType 2 through 2.9. A NULL pointer dereference in the Ins_GETVARIATION() function within ttinterp.c could lead to DoS via a crafted font file.

Learn more about our Web Application Penetration Testing UK.