Common Vulnerabilities and Exposures assigned an identifier CVE-2006-3467 to the following vulnerability: Name: CVE-2006-3467 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3467 Assigned: 20060710 Reference: URL: http://www.securityfocus.com/archive/1/archive/1/451426/100/200/threaded Reference: MISC: http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=190593 Integer overflow in FreeType before 2.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PCF file, as demonstrated by the Red Hat bad1.pcf test file, due to a partial fix of CVE-2006-1861.
This was addressed via: Red Hat Enterprise Linux version 2.1 (RHSA-2006:0500 (freetype) and RHSA-2006:0635 (XFree86)) Red Hat Enterprise Linux version 3 (RHSA-2006:0500 (freetype) and RHSA-2006:0635 (XFree86)) Red Hat Enterprise Linux version 4 (RHSA-2006:0500 (freetype) and RHSA-2006:0634 (xorg-x11))