Medium severity6.5NVD Advisory· Published Sep 3, 2019· Updated Jun 17, 2026
CVE-2015-9383
CVE-2015-9383
Description
FreeType before 2.6.2 has a heap-based buffer over-read in tt_cmap14_validate in sfnt/ttcmap.c.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:*+ 2 more
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
- FreeType/FreeTypedescription
Patches
Vulnerability mechanics
References
5- git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/nvdPatch
- savannah.nongnu.org/bugs/nvdExploitIssue TrackingThird Party Advisory
- lists.debian.org/debian-lts-announce/2019/09/msg00002.htmlnvdMailing ListThird Party Advisory
- usn.ubuntu.com/4126-1/nvdThird Party Advisory
- usn.ubuntu.com/4126-2/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.