← Back

CVE-2010-1797

nvd nist
Published: Aug 16, 2010Modified: Apr 29, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings function in the CFF Type2 CharStrings interpreter in cff/cffgload.c in FreeType before 2.4.2, as used in Apple iOS before 4.0.2 on the iPhone and iPod touch and before 3.2.2 on the iPad, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted CFF opcodes in embedded fonts in a PDF document, as demonstrated by JailbreakMe. NOTE: some of these details are obtained from third party information.

Affected (65)

Products: Apple: Iphone Os
1 product
Iphone Os
Configuration A
65 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 1.0.0
Version 1.0.1
Version 1.0.1
Version 1.0.2
Version 1.0.2
Version 1.1.0
Version 1.1.0
Version 1.1.0
Version 1.1.1
Version 1.1.1
Version 1.1.2
Version 1.1.2
Version 1.1.2
Version 1.1.3
Version 1.1.3
Version 1.1.3
Version 1.1.4
Version 1.1.4
Version 1.1.4
Version 1.1.5
Version 1.1.5
Version 1.1.5
Version 2.0.0
Version 2.0.0
Version 2.0.0
Version 2.0.1
Version 2.0.1
Version 2.0.1
Version 2.0.2
Version 2.0.2
Version 2.0.2
Version 2.0
Version 2.1.1
Version 2.1
Version 2.1
Version 2.1
Version 2.2.1
Version 2.2.1
Version 2.2.1
Version 2.2
Version 2.2
Version 3.0.1
Version 3.0.1
Version 3.0
Version 3.0
Version 3.0
Version 3.1.2
Version 3.1.2
Version 3.1.2
Version 3.1.3
Version 3.1.3
Version 3.1
Version 3.1
Version 3.1
Version 3.2.1
Version 3.2.1
Version 3.2
Version 3.2
Version 3.2
Version 4.0.1
Version 4.0.1
Version 4.0.1
Version 4.0
Version 4.0
Version 4.0

References (44)

Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Exploit
Source: product-security@apple.com
Exploit
Source: product-security@apple.com
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Vendor Advisory
Source: product-security@apple.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.